Security Advisory
CVE-2025-60800
7.5
HIGH
Vulnerability Description
Incorrect access control in the /jshERP-boot/user/info interface of jshERP up to commit 90c411a allows attackers to access sensitive information via a crafted GET request.
Published Date
October 28, 2025
Official Source
NIST NVD Advisory