📦 Jfinaloa
by Jfinaloa Project
🔍 What is Jfinaloa?
Description coming soon...
🛡️ Security Overview
Click on a severity to filter vulnerabilities
⚠️ Known Vulnerabilities
This SQL injection vulnerability in JFinalOA allows attackers to execute arbitrary SQL commands through the validRoleKey parameter. It affects all systems running JFinalOA versions before 2025.01.01, ...
This SQL injection vulnerability in JFinalOA allows attackers to execute arbitrary SQL commands through the getWorkFlowHis?insid component. It affects all users running JFinalOA versions before 2025.0...
This SQL injection vulnerability in JFinalOA allows attackers to execute arbitrary SQL commands through the contract application component. It affects all organizations using JFinalOA versions before ...
This cross-site scripting (XSS) vulnerability in JFinalOA allows attackers to inject malicious scripts into the openSelectManyUserPage interface. When exploited, it enables execution of arbitrary Java...
This cross-site scripting (XSS) vulnerability in JFinalOA allows attackers to inject malicious scripts into the /apply/getEditPage?view interface. When exploited, it enables execution of arbitrary Jav...
This cross-site scripting (XSS) vulnerability in JFinalOA allows attackers to inject malicious scripts into the common/getEditPage?view interface. When exploited, it enables execution of arbitrary web...