📦 Wukongcrm

by 5kcrm

🔍 What is Wukongcrm?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-23052

CRITICAL CVSS 9.8 Feb 29, 2024

This vulnerability allows remote attackers to execute arbitrary code on WuKongCRM systems by exploiting a deserialization flaw in the fastjson component's parseObject() function. Any organization runn...

CVE-2026-2141

MEDIUM CVSS 6.3 Feb 8, 2026

This CVE describes an improper authorization vulnerability in WuKongOpenSource WukongCRM that allows attackers to bypass access controls via URL manipulation. Remote exploitation is possible, affectin...

CVE-2025-60828

MEDIUM CVSS 6.5 Oct 8, 2025

WukongCRM 9.0-JAVA contains a fastjson deserialization vulnerability in the /OaExamine/setOaExamine interface that allows remote code execution. This affects organizations using this specific CRM vers...

CVE-2025-8852

MEDIUM CVSS 4.3 Aug 11, 2025

This vulnerability in WuKongCRM 11.0 allows remote attackers to obtain sensitive information through error messages exposed by the API Response Handler at /adminFile/upload. Organizations using WuKong...