Xuxueli Security Vulnerabilities (CVEs)

Track 12 security vulnerabilities affecting Xuxueli products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

6 High
6 Medium
🔔 Get Alerts for Xuxueli
CVE-2025-60646 6.1

This stored XSS vulnerability in Xxl-api v1.3.0 allows attackers to inject malicious scripts into the Business Line Management module's Name parameter...

Nov 12, 2025
CVE-2025-60645 6.5

A Cross-Site Request Forgery (CSRF) vulnerability in xxl-api v1.3.0 allows attackers to trick authenticated administrators into executing unauthorized...

Nov 12, 2025
CVE-2025-9264 5.4

This vulnerability in Xuxueli xxl-job allows remote attackers to manipulate job ID parameters to improperly control resource identifiers, potentially ...

Aug 21, 2025
CVE-2025-9263 4.3

This vulnerability in Xuxueli xxl-job allows attackers to manipulate jobGroup parameters to improperly access resources. It affects xxl-job versions u...

Aug 20, 2025
CVE-2025-7787 6.3

This critical Server-Side Request Forgery (SSRF) vulnerability in Xuxueli xxl-job allows attackers to make unauthorized requests from the vulnerable s...

Jul 18, 2025
CVE-2025-6700 4.3

This vulnerability allows attackers to inject malicious scripts via the errorMsg parameter in the xxl-sso login endpoint. When exploited, it enables c...

Jun 26, 2025
CVE-2024-42681 8.8

CVE-2024-42681 is an insecure permissions vulnerability in xxl-job v2.4.1 that allows remote attackers to execute arbitrary code via the Sub-Task ID c...

Aug 15, 2024
CVE-2024-24113 8.8

This SSRF vulnerability in xxl-job allows low-privileged users to make the server execute arbitrary requests to internal systems, potentially leading ...

Feb 8, 2024
CVE-2023-48089 8.8

xxl-job-admin 2.4.0 contains a remote code execution vulnerability in the /xxl-job-admin/jobcode/save endpoint. Attackers can execute arbitrary code o...

Nov 15, 2023
CVE-2020-24922 8.8

This CSRF vulnerability in xxl-job-admin allows attackers to create admin users via crafted HTML files, leading to privilege escalation and potential ...

Aug 11, 2023
CVE-2023-33779 8.8

A lateral privilege escalation vulnerability in XXL-Job v2.4.1 allows authenticated users to execute arbitrary commands on other users' accounts via a...

May 26, 2023
CVE-2023-27087 7.5

A permissions vulnerability in Xuxueli xxl-job versions 2.2.0, 2.3.0, and 2.3.1 allows attackers to obtain sensitive information via the pageList para...

Mar 21, 2023

Why Monitor Xuxueli Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 12+ known vulnerabilities affecting Xuxueli products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Xuxueli packages in under 60 seconds. No agents required - completely agentless scanning that works across Xuxueli deployments.

Free vulnerability database: Access detailed information about every Xuxueli CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Xuxueli CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Xuxueli CVEs Free