CVE-2025-50341
Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.
A Boolean-based SQL injection vulnerability was discovered in Axelor 5.2.4 via the _domain parameter. An attacker can manipulate the SQL query logic and determine true/false conditions, potentially leading to data exposure or further exploitation.
Published 2025-08-04. Last modified 2026-07-05.