CVE-2025-14909 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A weakness has been identified in JeecgBoot up to 3.9.0. The impacted element is the function SysUserOnlineController of the file jeecg-boot/jeecg-module-system…
Medium CVSS: 5.3

CVE-2025-14909

A weakness has been identified in JeecgBoot up to 3.9.0. The impacted element is the function SysUserOnlineController of the file jeecg-boot/jeecg-module-system/jeecg-system-biz/src/main/java/org/jeecg/modules/system/controller/SysUserOnlineController.java. Executing manipulation can lead to manage user sessions. The attack can be launched remotely. The exploit has been made available to the public and could be exploited. This patch is called b686f9fbd1917edffe5922c6362c817a9361cfbd. Applying a patch is advised to resolve this issue.
Vendor
Jeecg
Product
Jeecg Boot
CWE
CWE-1018
Yayın Tarihi
2025-12-19 02:16:04
Güncelleme
2025-12-30 18:31:31
Source Identifier
cna@vuldb.com
KEV Date Added
-

Kategoriler

Referanslar