Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in jiangqie JiangQie Official Website Mini Program allows Blind SQL Injection. This issue affects JiangQie Official Website Mini Program: from n/a through 1.8.2.
CVE ID: CVE-2025-30604
CVSS Base Severity: HIGH
CVSS Base Score: 7.6
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
Vendor: jiangqie
Product: JiangQie Official Website Mini Program
EPSS Score: 0.04% (probability of being exploited)
EPSS Percentile: 9.25% (scored less or equal to compared to others)
EPSS Date: 2025-04-21 (when was this score calculated)