CVE-2025-71428

CVE-2025-71428 published: Jivejdon through 5.0 contains a sql injection vulnerability in AccountDaoSql.getAccountByNameLike() that allows authenticated administrators to inject SQL via the username parameter. Attackers with the Admin role can submit crafted input to /admin/user/user...

View full NVD advisory → ← Back to CVE watch