Simple Task Scheduling System Project maintains a focused scheduling application that, despite a narrow product footprint, appears in task-automation and job-scheduling deployments across infrastructure environments. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and concentrate in SQL-injection weaknesses that reflect the application's database-query construction patterns. Defenders should prioritize patches for this vendor's releases given the severity tendency of its disclosures; current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Simple Task Scheduling System Project over time
Signals from CVEs in this vendor scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-36683CRITICAL Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_payment. | Aug 26, 2022 | 9.8 | 32 | NO | NO |
CVE-2022-36681CRITICAL Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_account. | Aug 26, 2022 | 9.8 | 31 | NO | NO |
CVE-2022-36678CRITICAL Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_category. | Aug 26, 2022 | 9.8 | 31 | NO | NO |
CVE-2022-30927CRITICAL A SQL injection vulnerability exists in Simple Task Scheduling System 1.0 when MySQL is being used as the application database. An attacker can issue SQL commands to the MySQL data | Jun 6, 2022 | 9.8 | 31 | NO | NO |
CVE-2022-36682CRITICAL Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_student. | Aug 26, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-36680CRITICAL Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_schedule. | Aug 26, 2022 | 9.8 | 30 | NO | NO |
CVE-2022-36679CRITICAL Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=user/manage_user. | Aug 26, 2022 | 9.8 | 29 | NO | NO |
CVE-2022-36676HIGH Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /categories/view_category.php. | Sep 1, 2022 | 7.2 | 24 | NO | NO |
CVE-2022-36675HIGH Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /schedules/manage_schedule.php. | Sep 1, 2022 | 7.2 | 24 | NO | NO |
CVE-2022-36674HIGH Simple Task Scheduling System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /schedules/view_schedule.php. | Sep 1, 2022 | 7.2 | 24 | NO | NO |
Signals from CVEs in this vendor scope (10 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Simple Task Scheduling System Project.
Media articles that mention a CVE ID that affects a product developed by Simple Task Scheduling System Project — matched by CVE ID, not by vendor name.