📦 Jimureport

by Jeecg

🔍 What is Jimureport?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-44893

CRITICAL CVSS 9.8 Sep 10, 2024

This vulnerability in JimuReport v1.7.8 allows attackers to escalate privileges via a crafted GET request to the /jeecg-boot/jmreport/dict/list endpoint. Attackers can gain unauthorized administrative...

CVE-2025-10771

MEDIUM CVSS 6.3 Sep 21, 2025

This vulnerability in jeecgboot JimuReport allows remote attackers to execute arbitrary code through deserialization attacks via the DB2 JDBC Handler component. It affects JimuReport versions up to 2....

CVE-2025-10770

MEDIUM CVSS 6.3 Sep 21, 2025

This vulnerability allows remote attackers to exploit a deserialization flaw in jeecgboot JimuReport's MySQL JDBC handler. Attackers can execute arbitrary code by manipulating the /drag/onlDragDataSou...

CVE-2025-8963

MEDIUM CVSS 6.3 Aug 14, 2025

A remote deserialization vulnerability exists in jeecgboot JimuReport up to version 2.1.1, specifically in the Data Large Screen Template component's /drag/onlDragDataSource/testConnection endpoint. T...