Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-5rf4-f24c-hpvh: SQL injection in jflyfox jfinal

JFinal CMS 5.1.0 is vulnerable to SQL Injection via /jfinal_cms/system/user/list.

ghsa
#sql#git

SQL injection in jflyfox jfinal

Critical severity GitHub Reviewed Published Aug 24, 2022 • Updated Aug 30, 2022

Related news

CVE-2022-37199: There is a SQL injection vulnerability exists in JFinal CMS 5.1.0 · Issue #48 · jflyfox/jfinal_cms

JFinal CMS 5.1.0 is vulnerable to SQL Injection via /jfinal_cms/system/user/list.