JFinal CMS v5.1.0 was discovered to contain a remote code execution (RCE) vulnerability via the ActionEnter function.
- https://github.com/jflyfox/jfinal_cms/issues/54
No PoCs found on GitHub currently.