CVE-2026-94413 | jishenghua jshERP up to 3.6 User Info Endpoint /user/info user_id weak password hash
A vulnerability was found in jishenghua jshERP up to 3.6. It has been classified as problematic. This issue affects some unknown processing of the file /user/info of the component User Info Endpoint. The manipulation of the argument user_id leads to password hash with insufficient computational effort.
This vulnerability is listed as CVE-2026-94413. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More