All 3 CVE vulnerabilities found in generator-jhipster, with AI-generated Chinese analysis, references, and POCs.
Vendor: jhipster
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-107375 | JHipster: SQL Injection in the Parameter of JHipster-Generated Reactive (WebFlux + R2DBC) Applicationssort CWE-89 | 8.8 | High | 2026-10-08 |
| CVE-2026-107303 | JHipster: Generated Applications Allow Stored XSS via Unrestricted Blob ContentType Opened as Same-Origin Blob CWE-79 | 7.6 | High | 2026-10-08 |
| CVE-2022-24815 | SQL Injection when creating an application with Reactive SQL backend CWE-89 | 8.1 | High | 2022-04-11 |
All 3 known CVE vulnerabilities affecting generator-jhipster with full Chinese analysis, references, and POCs where available.