CVE List

CVE-2022-37209

Critical 8.8

JFinal CMS 5.1.0 is affected by: SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

Published September 27, 2022.

Affected software

Get alerts for Jflyfox Jfinal CMS

Reference links