Simple Task Managing System Project maintains a narrowly scoped task-management application that, despite its focused product line, skews toward critical-severity outcomes in its vulnerability disclosures and frequently acquires public exploit code. The recurring weakness classes—cross-site scripting and SQL injection—reflect common input-handling gaps in web applications and represent straightforward attack surface for defenders to assess and remediate. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Simple Task Managing System Project over time
Signals from CVEs in this vendor scope (8 CVEs).
8 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-40032CRITICAL SQL Injection vulnerability in Simple Task Managing System version 1.0 in login.php in 'username' and 'password' parameters, allows attackers to execute arbitrary code and gain sen | Feb 17, 2023 | 9.8 | 62 | NO | YES |
CVE-2022-40030CRITICAL SourceCodester Simple Task Managing System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at changeStatus.php. | Sep 21, 2022 | 9.8 | 34 | NO | NO |
CVE-2022-3013CRITICAL A vulnerability classified as critical has been found in SourceCodester Simple Task Managing System. This affects an unknown part of the file /loginVaLidation.php. The manipulation | Aug 27, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-40026HIGH SourceCodester Simple Task Managing System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at board.php. | Sep 21, 2022 | 7.2 | 24 | NO | NO |
CVE-2022-3014MEDIUM A vulnerability classified as problematic was found in SourceCodester Simple Task Managing System. This vulnerability affects unknown code. The manipulation of the argument student | Aug 27, 2022 | 6.1 | 22 | NO | NO |
CVE-2022-40029MEDIUM SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newProjectValidation.php. This vulnerability | Sep 21, 2022 | 4.8 | 21 | NO | NO |
CVE-2022-40027MEDIUM SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newTask.php. This vulnerability allows attack | Sep 21, 2022 | 6.1 | 18 | NO | NO |
CVE-2022-40028MEDIUM SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newProjectValidation.php. This vulnerability | Sep 21, 2022 | 4.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (8 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Simple Task Managing System Project.
Media articles that mention a CVE ID that affects a product developed by Simple Task Managing System Project — matched by CVE ID, not by vendor name.