VYPR

CordysCRM

by CordysCRM

Source repositories

CVEs (1)

  • CVE-2025-70981CriFeb 12, 2026
    risk 0.64cvss 9.8epss 0.00

    CordysCRM 1.4.1 is vulnerable to SQL Injection in the employee list query interface (/user/list) via the departmentIds parameter.