CVE-2025-22980: Slims Senayan Library Management System Bulian

Medium severity, CVSS 6.7. EPSS: 0.6% chance of exploitation in the next 30 days.

A SQL Injection vulnerability exists in Senayan Library Management System SLiMS 9 Bulian 9.6.1 via the tempLoanID parameter in the loan form on /admin/modules/circulation/loan.php.

Affected products

  • Slims Senayan Library Management System Bulian: version 9.6.1 only

Published 2025-01-22. Last modified 2026-06-17.