Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-wv39-f3vx-3v6q: SQL injection in jflyfox jfinal

JFinal CMS 5.1.0 is vulnerable to SQL Injection via /jfinal_cms/system/role/list.

ghsa
#sql#git

SQL injection in jflyfox jfinal

Critical severity GitHub Reviewed Published Aug 24, 2022 • Updated Aug 30, 2022

Related news

CVE-2022-37223: There is a SQL injection vulnerability exists in JFinal CMS 5.1.0 again · Issue #49 · jflyfox/jfinal_cms

JFinal CMS 5.1.0 is vulnerable to SQL Injection via /jfinal_cms/system/role/list.