CVE-2025-31024

CVSS 3.1 Score 8.5 of 10 (high)

Details

Published Apr 1, 2025
CWE ID 89

Summary

CVE-2025-31024 is a new SQL Injection vulnerability affecting RJ Quickcharts, from an unknown version up to 0.6.1. An attacker can exploit this issue by injecting malicious SQL commands into the application, potentially gaining unauthorized access to sensitive data or executing arbitrary code. The vulnerability arises due to improper neutralization of special elements in SQL commands, allowing an attacker to manipulate queries and bypass intended access restrictions. This issue poses a significant risk to organizations utilizing RJ Quickcharts and highlights the importance of keeping software up-to-date with security patches.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share