Quequnlong

Shiyi-blog

9 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.33%
  • Veröffentlicht 13.09.2026 16:16:52
  • Zuletzt bearbeitet 15.09.2026 15:17:28

A security vulnerability has been detected in quequnlong shiyi-blog up to 1.2.1. Affected by this issue is the function highlightKeyword of the file blog-web/src/components/Search/index.vue of the component Search. The manipulation of the argument ti...

  • EPSS 0.2%
  • Veröffentlicht 13.09.2026 15:15:12
  • Zuletzt bearbeitet 14.09.2026 20:56:48

A vulnerability was identified in quequnlong shiyi-blog 1.0.0-1.2.1. This impacts the function SysChatMsgMapper.getChatMsgList of the file blog-web/src/views/chat/index.vue of the component chat sendMsg Endpoint. Such manipulation of the argument cha...

  • EPSS 0.27%
  • Veröffentlicht 13.09.2026 14:15:19
  • Zuletzt bearbeitet 16.09.2026 15:18:28

A vulnerability was detected in quequnlong shiyi-blog up to 1.2.1. Affected is an unknown function of the file blog-admin/src/views/message/message/index.vue of the component Add Message API. The manipulation of the argument body.content results in c...

Exploit
  • EPSS 0.47%
  • Veröffentlicht 27.10.2025 18:32:08
  • Zuletzt bearbeitet 08.10.2026 11:10:00

A vulnerability was found in quequnlong shiyi-blog up to 1.2.1. This impacts an unknown function of the file src/main/java/com/mojian/controller/SysJobController.java of the component Job Handler. The manipulation results in deserialization. The atta...

Exploit
  • EPSS 0.29%
  • Veröffentlicht 03.06.2025 17:31:04
  • Zuletzt bearbeitet 03.10.2025 01:07:07

A vulnerability has been found in quequnlong shiyi-blog up to 1.2.1 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /dev-api/api/comment/add. The manipulation of the argument content leads to cros...

Exploit
  • EPSS 0.68%
  • Veröffentlicht 03.06.2025 17:00:21
  • Zuletzt bearbeitet 03.10.2025 01:14:16

A vulnerability, which was classified as critical, was found in quequnlong shiyi-blog up to 1.2.1. Affected is an unknown function of the file /api/sys/user/verifyPassword/ of the component Administrator Backend. The manipulation leads to improper au...

Exploit
  • EPSS 0.63%
  • Veröffentlicht 03.06.2025 17:00:19
  • Zuletzt bearbeitet 03.10.2025 01:15:42

A vulnerability, which was classified as critical, has been found in quequnlong shiyi-blog up to 1.2.1. This issue affects some unknown processing of the file /dev api/app/album/photos/. The manipulation leads to improper authorization. The attack ma...

Exploit
  • EPSS 0.42%
  • Veröffentlicht 03.06.2025 16:31:04
  • Zuletzt bearbeitet 09.06.2025 15:13:41

A vulnerability classified as critical was found in quequnlong shiyi-blog up to 1.2.1. This vulnerability affects unknown code of the file /app/sys/article/optimize. The manipulation of the argument url leads to server-side request forgery. The attac...

Exploit
  • EPSS 0.62%
  • Veröffentlicht 03.06.2025 16:00:21
  • Zuletzt bearbeitet 09.06.2025 15:14:15

A vulnerability classified as critical has been found in quequnlong shiyi-blog up to 1.2.1. This affects an unknown part of the file /api/file/upload. The manipulation of the argument file/source leads to path traversal. It is possible to initiate th...