Security Advisory

CVE-2025-60800

7.5
HIGH

Vulnerability Description

Incorrect access control in the /jshERP-boot/user/info interface of jshERP up to commit 90c411a allows attackers to access sensitive information via a crafted GET request.
Published Date October 28, 2025
Official Source NIST NVD Advisory