VYPR

jpress

by Guizhou Xiaoma Technology

CVEs (2)

  • CVE-2024-12348LowDec 9, 2024
    risk 0.23cvss 3.5epss 0.00

    A vulnerability was found in Guizhou Xiaoma Technology jpress 5.1.2. It has been classified as problematic. Affected is the function AttachmentUtils.isUnSafe of the file /commons/attachment/upload of the component Attachment Upload Handler. The manipulation of the argument…

  • CVE-2024-11971LowNov 28, 2024
    risk 0.23cvss 3.5epss 0.01

    A vulnerability classified as problematic was found in Guizhou Xiaoma Technology jpress 5.1.2. Affected by this vulnerability is an unknown functionality of the file /commons/attachment/upload of the component Avatar Handler. The manipulation of the argument files leads to cross…