Critical severity9.8NVD Advisory· Published Mar 26, 2024· Updated Jun 17, 2026
CVE-2024-29401
CVE-2024-29401
Description
xzs-mysql 3.8 is vulnerable to Insufficient Session Expiration, which allows attackers to use the session of a deleted admin to do anything.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- xzs-mysql/xzs-mysqldescription
Patches
Vulnerability mechanics
References
1- github.com/menghaining/PoC/blob/main/xzs-mysql/xzs-mysql%20--%20PoC.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.