CVE-2025-67102
EUVD-2025-20770817.02.2026, 20:22
A SQL injection vulnerability in the alldayoffs feature in Jorani up to v1.0.4, allows an authenticated attacker to execute arbitrary SQL commands via the entity parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jorani | jorani | 𝑥 ≤ 1.0.4 |
𝑥
= Vulnerable software versions