Jeecg

Jeecgboot

52 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 02.05.2026 05:16:01
  • Zuletzt bearbeitet 05.05.2026 19:17:22

A vulnerability was identified in JeecgBoot up to 3.9.1. This affects the function OpenApiController.add/OpenApiController.call of the file OpenApiController.java of the component OpenApi Service. Such manipulation of the argument originUrl database ...

  • EPSS 0.27%
  • Veröffentlicht 02.05.2026 05:16:01
  • Zuletzt bearbeitet 05.05.2026 20:16:40

A vulnerability was determined in JeecgBoot up to 3.9.1. Affected by this issue is the function checkPathTraversalBatch of the file FileDownloadUtils.jav of the component LoadFile Endpoint. This manipulation of the argument files causes server-side r...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 02.05.2026 03:15:12
  • Zuletzt bearbeitet 05.05.2026 19:17:22

A vulnerability was found in JeecgBoot up to 3.9.1. Affected by this vulnerability is an unknown functionality of the file /sys/fillRule/edit of the component FillRuleUtil Component. The manipulation of the argument ruleClass results in improper auth...

Exploit
  • EPSS 0.2%
  • Veröffentlicht 28.04.2026 16:30:14
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was determined in JeecgBoot up to 3.9.1. Impacted is the function SqlInjectionUtil of the file jeecg-boot/jeecg-boot-base-core/src/main/java/org/jeecg/common/util/SqlInjectionUtil.java of the component loadDict Endpoint. This manipula...

  • EPSS 0.21%
  • Veröffentlicht 10.04.2026 03:16:04
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability has been found in JeecgBoot up to 3.9.1. This impacts an unknown function of the component SysAnnouncementController. Such manipulation leads to improper authorization. The attack can be launched remotely. The exploit has been disclos...

  • EPSS 0.41%
  • Veröffentlicht 06.04.2026 03:15:14
  • Zuletzt bearbeitet 24.07.2026 09:10:00

A security vulnerability has been detected in JeecgBoot 3.9.0/3.9.1. The impacted element is an unknown function of the file jeecg-boot/jeecg-module-system/jeecg-system-biz/src/main/java/org/jeecg/modules/airag/JeecgBizToolsProvider.java of the compo...

Exploit
  • EPSS 0.19%
  • Veröffentlicht 07.03.2026 21:32:13
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability has been found in JeecgBoot up to 3.9.1. Affected is the function isExistSqlInjectKeyword of the file /jeecg-boot/sys/api/getDictItems. Such manipulation leads to sql injection. The attack may be performed from remote. The exploit has...

Exploit
  • EPSS 0.25%
  • Veröffentlicht 22.02.2026 13:16:12
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A weakness has been identified in JeecgBoot 3.9.0. Affected by this vulnerability is an unknown functionality of the file /sys/common/uploadImgByHttp. Executing a manipulation of the argument fileUrl can lead to server-side request forgery. The attac...

Exploit
  • EPSS 0.36%
  • Veröffentlicht 20.02.2026 04:32:10
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A security vulnerability has been detected in JeecgBoot up to 3.9.1. The affected element is an unknown function of the file /jeecgboot/sys/dict/loadDict/airag_app,1,create_by of the component Backend Interface. Such manipulation of the argument keyw...

Exploit
  • EPSS 0.31%
  • Veröffentlicht 16.02.2026 12:16:22
  • Zuletzt bearbeitet 18.02.2026 21:43:53

A weakness has been identified in JeecgBoot 3.9.1. This vulnerability affects the function importDocumentFromZip of the file org/jeecg/modules/airag/llm/controller/AiragKnowledgeController.java of the component Retrieval-Augmented Generation. Executi...