Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

a+HRD — Vulnerabilities & Security Advisories 20

All 20 CVE vulnerabilities found in a+HRD, with AI-generated Chinese analysis, references, and POCs.

This page documents security vulnerabilities associated with a+HRD, an human resource management software solution. It aggregates a comprehensive collection of Common Weakness Enumerations (CWEs) affecting this specific product, covering reported issues from its initial public release through the most recent security advisories issued by the vendor or third-party researchers. By consolidating these disparate data points, the page allows security professionals and system administrators to track the chronological progression of a vendor's security advisories and patch releases. Users can analyze specific weakness classes to understand the nature of flaws, such as cross-site scripting or SQL injection, within the context of this application's architecture. Additionally, the resource serves as a historical reference, enabling teams to look up a product's vulnerability history to assess past security posture and identify recurring patterns in code quality or configuration errors. This aggregation supports risk assessment by providing a clear view of known exploitable conditions, helping organizations prioritize remediation efforts and verify if their instances are susceptible to documented exploits. The data is structured to facilitate easy lookup based on severity, release date, or mitigation status, ensuring that stakeholders have immediate access to critical information required for maintaining the integrity of their HR infrastructure.

Vendor: aEnrich

CVE IDTitleCVSSSeverityPublished
CVE-2026-6834 aEnrich|a+HRD - Missing Authorization CWE-862 6.5 Medium2026-04-22
CVE-2026-6833 aEnrich|a+HRD - SQL Injection CWE-89 6.5 Medium2026-04-22
CVE-2025-12872 aEnrich|eHRD - Stored Cross-Site Scripting CWE-79 5.4 Medium2025-11-12
CVE-2025-12871 aEnrich|a+HRD - Authentication Abuse CWE-1390 9.8 Critical2025-11-12
CVE-2025-12870 aEnrich|eHRD - Authentication Abuse CWE-1390 9.8 Critical2025-11-12
CVE-2025-12869 aEnrich|eHRD - Stored Cross-Site Scripting CWE-79 4.8 Medium2025-11-12
CVE-2025-0586 aEnrich Technology a+HRD - Insecure Deserialization CWE-502 7.2 High2025-01-20
CVE-2025-0585 aEnrich Technology a+HRD - SQL Injection CWE-89 9.8 Critical2025-01-20
CVE-2025-0584 aEnrich Technology a+HRD - Server-Side Request Forgery (SSRF) CWE-918 5.3 Medium2025-01-20
CVE-2025-0583 aEnrich Technology a+HRD - Reflected Cross-site Scripting(XSS) CWE-79 6.1 Medium2025-01-20
CVE-2024-3775 aEnrich Technology a+HRD - Argument Injection CWE-88 5.3 Medium2024-04-15
CVE-2024-3774 aEnrich Technology a+HRD - Exposure of Sensitive Data CWE-306 5.3 Medium2024-04-15
CVE-2023-20853 aEnrich a+HRD - Deserialization of Untrusted Data CWE-502 9.8 Critical2023-04-27
CVE-2023-20852 aEnrich a+HRD - Deserialization of Untrusted Data CWE-502 9.8 Critical2023-04-27
CVE-2022-39042 aEnrich a+HRD - Improper Authentication CWE-287 9.8 Critical2023-01-03
CVE-2022-39041 aEnrich a+HRD - SQL Injection CWE-89 9.8 Critical2023-01-03
CVE-2022-39040 aEnrich a+HRD - Path Traversal CWE-22 7.5 High2023-01-03
CVE-2022-39039 aEnrich a+HRD - Server-Side Request Forgery (SSRF) CWE-918 9.8 Critical2023-01-03
CVE-2022-26676 aEnrich a+HRD - Broken Access Control CWE-269 9.8 Critical2022-04-07
CVE-2022-26675 aEnrich a+HRD - Path Traversal CWE-22 7.5 High2022-04-07

All 20 known CVE vulnerabilities affecting a+HRD with full Chinese analysis, references, and POCs where available.