Vulnerabilities > Jfinaloa Project

DATE CVE VULNERABILITY TITLE RISK
2023-02-09 CVE-2023-0758 SQL Injection vulnerability in Jfinaloa Project Jfinaloa 1.0.2
A vulnerability was found in glorylion JFinalOA 1.0.2 and classified as critical.
network
low complexity
jfinaloa-project CWE-89
critical
9.8
2022-03-30 CVE-2021-40645 SQL Injection vulnerability in Jfinaloa Project Jfinaloa 20210907
An SQL Injection vulnerability exists in glorylion JFinalOA as of 9/7/2021 in the defkey parameter getHaveDoneTaskDataList method of the FlowTaskController.
network
low complexity
jfinaloa-project CWE-89
4.0