VYPR
High severity7.2NVD Advisory· Published Feb 17, 2026· Updated Jul 5, 2026

CVE-2025-70397

CVE-2025-70397

Description

jizhicms 2.5.6 is vulnerable to SQL Injection in Article/deleteAll and Extmolds/deleteAll via the data parameter.

Affected products

3
  • Jizhicms/Jizhicms3 versions
    cpe:2.3:a:jizhicms:jizhicms:2.5.6:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:jizhicms:jizhicms:2.5.6:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: =2.5.6

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.