CVE-2026-94412 | jishenghua jshERP up to 3.6 /user/resetPwd authorization
A vulnerability was found in jishenghua jshERP up to 3.6 and classified as critical. This vulnerability affects unknown code of the file /user/resetPwd. Executing a manipulation can lead to authorization bypass.
This vulnerability is tracked as CVE-2026-94412. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More