Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Jeewms — Vulnerabilities & Security Advisories 18

All 18 CVE vulnerabilities found in Jeewms, with AI-generated Chinese analysis, references, and POCs.

Jeewms is a Java-based enterprise management system developed by Jeewx that aggregates Common Weakness Enumerations (CWE) related to its software components. This page collects reported security vulnerabilities affecting Jeewms, including buffer overflows, injection flaws, and improper access control issues documented from its initial releases through 2024. Visitors can track vendor security advisories, understand the characteristics of specific weakness classes within the Jeewms architecture, and review the historical vulnerability data associated with this product family. By centralizing these records, the resource provides a comprehensive view of the security landscape for Jeewms installations, allowing system administrators and security analysts to identify potential risks and prioritize remediation efforts based on verified historical data. The aggregation includes publicly disclosed Common Vulnerabilities and Exposures (CVEs) as well as internal vulnerability reports where available, offering a complete picture of the product's security posture over time. Users are encouraged to cross-reference this information with current vendor patches and configuration guidelines to ensure robust protection against known attack vectors. The data presented here serves as a foundational reference for security assessments, penetration testing, and compliance auditing activities involving Jeewms systems. All entries are organized chronologically and by severity to facilitate efficient analysis and decision-making for IT security teams responsible for maintaining the integrity and confidentiality of Jeewms deployments in enterprise environments.

Vendor: erzhongxmu

CVE ID Title CVSS Severity Published
CVE-2026-11458 erzhongxmu JeeWMS Boot Actuator Endpoint actuator information disclosure CWE-200 5.3 Medium 2026-06-07
CVE-2026-11457 erzhongxmu JeeWMS JimuReport test-connection Endpoint testConnection injection CWE-74 7.3 High 2026-06-07
CVE-2026-3028 erzhongxmu JEEWMS JeecgListDemoController.java doAdd cross site scripting CWE-79 4.3 Medium 2026-02-23
CVE-2026-3027 erzhongxmu JEEWMS UEditor getContent.jsp cross site scripting CWE-79 4.3 Medium 2026-02-23
CVE-2026-3026 erzhongxmu JEEWMS UEditor getRemoteImage.jsp server-side request forgery CWE-918 7.3 High 2026-02-23
CVE-2025-5390 JeeWMS File filedeal.do filedeal access control CWE-284 6.3 Medium 2025-05-31
CVE-2025-5389 JeeWMS File generateController.do dogenerateOne2Many access control CWE-284 6.3 Medium 2025-05-31
CVE-2025-5388 JeeWMS generateController.do dogenerate sql injection CWE-89 6.3 Medium 2025-05-31
CVE-2025-5387 JeeWMS File generateController.do dogenerate access control CWE-284 6.3 Medium 2025-05-31
CVE-2025-5386 JeeWMS cgformTransController.do transEditor sql injection CWE-89 6.3 Medium 2025-05-31
CVE-2025-5385 JeeWMS cgformTemplateController.do doAdd path traversal CWE-22 6.3 Medium 2025-05-31
CVE-2025-5384 JeeWMS cgAutoListController.do CgAutoListController sql injection CWE-89 6.3 Medium 2025-05-31
CVE-2025-0392 Guangzhou Huayi Intelligent Technology Jeewms graphReportController.do datagridGraph sql injection CWE-89 6.3 Medium 2025-01-11
CVE-2025-0391 Guangzhou Huayi Intelligent Technology Jeewms CgFormBuildController. java saveOrUpdate sql injection CWE-89 6.3 Medium 2025-01-11
CVE-2025-0390 Guangzhou Huayi Intelligent Technology Jeewms wmOmNoticeHController.do path traversal CWE-24 5.3 Medium 2025-01-11
CVE-2024-12347 Guangzhou Huayi Intelligent Technology Jeewms Druid Monitoring Interface index.html improper authorization CWE-285 5.3 Medium 2024-12-08
CVE-2024-11961 Guangzhou Huayi Intelligent Technology Jeewms WmOmNoticeHController.java preHandle information disclosure CWE-200 5.3 Medium 2024-11-28
CVE-2024-11251 erzhongxmu Jeewms AuthInterceptor cgReportController.do sql injection CWE-89 6.3 Medium 2024-11-15

All 18 known CVE vulnerabilities affecting Jeewms with full Chinese analysis, references, and POCs where available.