Vulnerabilities > Steve Community

DATE CVE VULNERABILITY TITLE RISK
2024-08-12 CVE-2024-21550 Cross-site Scripting vulnerability in Steve-Community Steve
SteVe is an open platform that implements different version of the OCPP protocol for Electric Vehicle charge points, acting as a central server for management of registered charge points.
network
low complexity
steve-community CWE-79
6.1
2023-12-26 CVE-2023-52096 SQL Injection vulnerability in Steve-Community Ocpp-Jaxb
SteVe Community ocpp-jaxb before 0.0.8 generates invalid timestamps such as ones with month 00 in certain situations (such as when an application receives a StartTransaction Open Charge Point Protocol message with a timestamp parameter of 1000000).
network
low complexity
steve-community CWE-89
7.5