Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

jivejdon — Vulnerabilities & Security Advisories 13

All 13 CVE vulnerabilities found in jivejdon, with AI-generated Chinese analysis, references, and POCs.

Vendor: banq

CVE ID Title CVSS Severity Published
CVE-2026-107831 Jivejdon through 5.0 CSRF via GET-based Account and Thread Actions CWE-352 4.3 Medium 2026-10-08
CVE-2026-107829 Jivejdon through 5.0 Unsalted MD5 Password Storage via AccountDaoSql CWE-916 5.9 Medium 2026-10-08
CVE-2026-107830 Jivejdon through commit ee67a65e Missing Rate Limiting via /account/smsVRAction SMS Endpoint CWE-799 5.3 Medium 2026-10-08
CVE-2026-107828 Jivejdon through 5.0 Predictable Passwords via Sina Weibo OAuth Login CWE-1391 6.5 Medium 2026-10-08
CVE-2026-107801 Jivejdon through 5.0 Stored XSS via Attachment Upload Content-Type CWE-79 5.4 Medium 2026-10-08
CVE-2026-107800 Jivejdon through 5.0 Stored XSS via Private Short Messages CWE-79 5.4 Medium 2026-10-08
CVE-2026-107799 Jivejdon through 5.0 Stored XSS via messageListBody.jsp Forum Message Rendering CWE-79 5.4 Medium 2026-10-08
CVE-2026-107797 Jivejdon through 5.0 Reflected XSS via postThread.jsp to and tag Parameters CWE-79 6.1 Medium 2026-10-08
CVE-2026-107798 Jivejdon through commit ee67a65e Stored XSS via Markdown Links in TextStyle Rendering Filter CWE-79 5.4 Medium 2026-10-08
CVE-2026-107793 Jivejdon through 5.0 IDOR via subSaveAction Subscription Delete CWE-639 4.3 Medium 2026-10-08
CVE-2026-107796 Jivejdon through commit ee67a65e Reflected XSS via taggedThreadList.jsp tagID and count Parameters CWE-79 6.1 Medium 2026-10-08
CVE-2026-107792 Jivejdon through commit ee67a65e Missing Authorization via /message/threadToForum/save Thread Move CWE-862 4.3 Medium 2026-10-08
CVE-2025-71428 Jivejdon through 5.0 SQL Injection via username in userListAction CWE-89 4.9 Medium 2026-10-08

All 13 known CVE vulnerabilities affecting jivejdon with full Chinese analysis, references, and POCs where available.