CVE-2024-48357: Lylme Spage
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
LyLme Spage 1.2.0 through 1.6.0 is vulnerable to SQL Injection via /admin/apply.php.
Affected products
- Lylme Lylme Spage: from 1.2.0, up to and including 1.6.0
Published 2024-10-28. Last modified 2026-06-17.