Skip to main content

Vendor/product archive

inducer / relate CVEs

Beta · best-effort

5 CVEs tagged to inducer / relate1 Critical, 2 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2026-41588

Published May 8, 2026

RELATE is a web-based courseware package. Prior to commit 2f68e16, there is a timing attack vulnerability in course/auth.py — check_sign_in_key(). This issue has been patched via…

CVSS 9.0 · Critical
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2024-32406

Published Apr 26, 2024

Server-Side Template Injection (SSTI) vulnerability in inducer relate before v.2024.1 allows a remote attacker to execute arbitrary code via a crafted payload to the Batch-Issue E…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-32404

Published Apr 26, 2024

Server-Side Template Injection (SSTI) vulnerability in inducer relate before v.2024.1, allows remote attackers to execute arbitrary code via a crafted payload to the Markup Sandbo…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-32405

Published Apr 22, 2024

Cross Site Scripting vulnerability in inducer relate before v.2024.1 allows a remote attacker to escalate privileges via a crafted payload to the Answer field of InlineMultiQuesti…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-32407

Published Apr 22, 2024

An issue in inducer relate before v.2024.1 allows a remote attacker to execute arbitrary code via a crafted payload to the Page Sandbox feature.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1