Vulnerabilities > Jfinaloa Project > Jfinaloa > 2021.09.07

DATE CVE VULNERABILITY TITLE RISK
2022-03-30 CVE-2021-40645 SQL Injection vulnerability in Jfinaloa Project Jfinaloa 20210907
An SQL Injection vulnerability exists in glorylion JFinalOA as of 9/7/2021 in the defkey parameter getHaveDoneTaskDataList method of the FlowTaskController.
network
low complexity
jfinaloa-project CWE-89
4.0