millad7/Axelor-vulnerability-CVE-2025-50341

millad7/Axelor-vulnerability-CVE-2025-50341

Releases0
Public advisory for CVE-2025-50341 in Axelor

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL

A Boolean-based SQL injection vulnerability was discovered in Axelor 5.2.4 via the _domain parameter. An attacker can manipulate the SQL query logic and determine true/false conditions, potentially leading to data exposure or further exploitation.