Jfinal CMS v5.1.0 was discovered to contain a SQL injection vulnerability via the attrVal parameter at /jfinal_cms/system/dict/list.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-33114.json"