CVE-2025-7385

Publication date

2025-09-04 12:05:55

Family

CERT-PL

State

PUBLISHED

Description

Input from search query parameter in GOV CMS is not sanitized properly, leading to a Blind SQL injection vulnerability, which might be exploited by an unauthenticated remote attacker. Versions 4.0 and above are not affected.