Vulnerabilities > Oceanicsoft > Valeapp > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-09-27 CVE-2024-8643 Session Fixation vulnerability in Oceanicsoft Valeapp
Session Fixation vulnerability in Oceanic Software ValeApp allows Brute Force, Session Hijacking.This issue affects ValeApp: before v2.0.0.
network
low complexity
oceanicsoft CWE-384
critical
9.8
2024-09-27 CVE-2024-8607 SQL Injection vulnerability in Oceanicsoft Valeapp
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oceanic Software ValeApp allows SQL Injection.This issue affects ValeApp: before v2.0.0.
network
low complexity
oceanicsoft CWE-89
critical
9.8