Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Report CRITICAL 9.8
CVE-2024-7314EPSS 51%

anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP req…

Fix: 1.4.1+
Fix from $2,300 2024-08-02
Aj Report CRITICAL 9.8
CVE-2024-5356

A vulnerability, which was classified as critical, was found in anji-plus AJ-Report up to 1.4.1. Affected is an unknown function of the file /dataSet…

Fix: after 1.4.1
Fix from $2,300 2024-05-26
Aj Report CRITICAL 9.8
CVE-2024-5355

A vulnerability, which was classified as critical, has been found in anji-plus AJ-Report up to 1.4.1. This issue affects the function IGroovyHandler.…

Fix: after 1.4.1
Fix from $2,300 2024-05-26
Aj Report MEDIUM 6.5
CVE-2024-5354

A vulnerability classified as problematic was found in anji-plus AJ-Report up to 1.4.1. This vulnerability affects unknown code of the file /reportSh…

Fix: after 1.4.1
Fix from $1,600 2024-05-26
Aj Report CRITICAL 9.8
CVE-2024-5353

A vulnerability classified as critical has been found in anji-plus AJ-Report up to 1.4.1. This affects the function decompress of the component ZIP F…

Fix: after 1.4.1
Fix from $2,300 2024-05-26
Aj Report CRITICAL 9.8
CVE-2024-5352

A vulnerability was found in anji-plus AJ-Report up to 1.4.1. It has been rated as critical. Affected by this issue is the function validationRules o…

Fix: after 1.4.1
Fix from $2,300 2024-05-26
Aj Report CRITICAL 9.8
CVE-2024-5351

A vulnerability was found in anji-plus AJ-Report up to 1.4.1. It has been declared as critical. Affected by this vulnerability is the function getVal…

Fix: after 1.4.1
Fix from $2,300 2024-05-26
Aj Report CRITICAL 9.8
CVE-2024-5350

A vulnerability was found in anji-plus AJ-Report up to 1.4.1. It has been classified as critical. Affected is the function pageList of the file /page…

Fix: after 1.4.1
Fix from $2,300 2024-05-25
Aj Report CRITICAL 9.8
CVE-2022-46973

Report v0.9.8.6 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability.

No fix yet
Fix from $2,300 2023-03-03
Aj Report HIGH 8.8
CVE-2022-42983

anji-plus AJ-Report 0.9.8.6 allows remote attackers to bypass login authentication by spoofing JWT Tokens.

No fix yet
Fix from $1,950 2022-10-17