Vulnerabilities > Steve Community
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-08-12 | CVE-2024-21550 | Cross-site Scripting vulnerability in Steve-Community Steve SteVe is an open platform that implements different version of the OCPP protocol for Electric Vehicle charge points, acting as a central server for management of registered charge points. | 6.1 |
2023-12-26 | CVE-2023-52096 | SQL Injection vulnerability in Steve-Community Ocpp-Jaxb SteVe Community ocpp-jaxb before 0.0.8 generates invalid timestamps such as ones with month 00 in certain situations (such as when an application receives a StartTransaction Open Charge Point Protocol message with a timestamp parameter of 1000000). | 7.5 |