CVE-2025-69216 | devcode-it openstamanager up to 2.9.8 Payment Schedule init.php id_anagrafica sql injection (GHSA-q6g3-fv43-m2w6)
A vulnerability was found in devcode-it openstamanager up to 2.9.8 and classified as critical. This affects an unknown part of the file templates/scadenzario/init.php of the component Payment Schedule. Executing a manipulation of the argument id_anagrafica can lead to sql injection.
This vulnerability appears as CVE-2025-69216. The attack may be performed from remote. There is no available exploit.