CVE-2025-52025
Aptsys gemscms backend SQL Injection in GetServiceByRestaurantID
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
An SQL injection vulnerability in the Aptsys gemscms POS Platform backend's GetServiceByRestaurantID endpoint allows attackers to execute arbitrary SQL code by submitting crafted input. This could lead to unauthorized access or modification of data. Confirm if your systems use this platform and are exposed to this risk