guojusoft CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

guojusoft vulnerability overview

Aggregates CVE and security vulnerability intelligence across all guojusoft-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk sql injection and related problems; some flaws may lead to vendor impact data exposure, affecting vendor surface production workloads and vendor surface software deployment scenarios.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-51825 JeecgBoot versions from 3.4.3 up to 3.8.0 were found to contain a SQL injection vulnerability in the /jeecg-boot/online/cgreport/head/parseSql endpoint, which allows bypassing SQL blacklist restrictions. [email protected] 6.5 0.07% 2025-08-22 2025-10-01
CVE-2024-57606 SQL injection vulnerability in Beijing Guoju Information Technology Co., Ltd JeecgBoot v.3.7.2 allows a remote attacker to obtain sensitive information via the getTotalData component. [email protected] 7.5 0.33% 2025-02-07 2025-09-29
CVE-2020-23083 Unrestricted File Upload in JEECG v4.0 and earlier allows remote attackers to execute arbitrary code or gain privileges by uploading a crafted file to the component "jeecgFormDemoController.do?commonUpload". [email protected] 9.8 10.61% 2021-05-03 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence