Geekcodelab develops web-based utilities centered around its login and page-redirection products, with observed vulnerabilities clustering around input-handling and authorization weaknesses including cross-site scripting and missing authorization checks. This represents a narrow vendor profile with a focused product scope; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Geekcodelab over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-43311CRITICAL Improper Privilege Management vulnerability in Geek Code Lab Login As Users allows Privilege Escalation.This issue affects Login As Users: from n/a through 1.4.2. | Aug 19, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-43982HIGH Missing Authorization vulnerability in Geek Code Lab Login As Users allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Login As Users: from | Nov 1, 2024 | 8.8 | 25 | NO | NO |
CVE-2024-24889MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Geek Code Lab All 404 Pages Redirect to Homepage allows Stored XSS.This issue | Feb 12, 2024 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Geekcodelab.
Media articles that mention a CVE ID that affects a product developed by Geekcodelab — matched by CVE ID, not by vendor name.