📦 Yaoqishan

by User Xiangpeng

🔍 What is Yaoqishan?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-45615

CRITICAL CVSS 9.8 May 5, 2025

This vulnerability allows attackers to bypass access controls in yaoqishan's admin API, enabling unauthorized users to gain administrative privileges. It affects all deployments of yaoqishan v0.0.1-SN...

CVE-2025-2112

MEDIUM CVSS 6.3 Mar 8, 2025

This is a critical SQL injection vulnerability in the user-xiangpeng yaoqishan software that allows remote attackers to execute arbitrary SQL commands via the typeId parameter in the getMediaLisByFilt...