CVE-2025-60265
09.10.2025, 16:15
In xckk v9.6, there is a SQL injection vulnerability in which the orderBy parameter in user/list is not securely filtered, resulting in a SQL injection vulnerability.
| Vendor | Product | Version |
|---|---|---|
| bestfeng | xckk | 9.6 |
𝑥
= Vulnerable software versions