CVE-2025-14259 | Jihai Jshop MiniProgram Mall System 2.9.0 /index.php/api.html cat_id sql injection
A vulnerability labeled as critical has been found in Jihai Jshop MiniProgram Mall System 2.9.0. Affected by this issue is some unknown functionality of the file /index.php/api.html. The manipulation of the argument cat_id results in sql injection.
This vulnerability is cataloged as CVE-2025-14259. The attack may be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More