CVE-2024-12350: Jwillber Jfinalcms
High severity, CVSS 8.8. EPSS: 3.7% chance of exploitation in the next 30 days.
A vulnerability was found in JFinalCMS 1.0. It has been rated as critical. Affected by this issue is the function update of the file \src\main\java\com\cms\controller\admin\TemplateController.java of the component Template Handler. The manipulation of the argument content leads to command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected products
- Jwillber Jfinalcms: version 1.0 only
Published 2024-12-09. Last modified 2026-06-17.