Thinkgem

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    2
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-36760

    Authenticated File Upload Path Traversal Allowing Arbitrary File Creation in JeeSite 5.15.1

    Last Modified: May 02, 2026
    Published: Apr 30, 2026

    CVE-2026-36761

    Stored XSS via msgContent in JeeSite msgInner/save

    Last Modified: May 01, 2026
    Published: Apr 30, 2026

    CVE-2026-36762

    An issue in the fileEntityId parameter in the /a/file/upload endpoint of JeeSite v5.15.1 allows authenticated attackers with file upload permissions to execute a path traversal and write arbitrary files with whitelisted suffixes to arbitrary filesystem locations.

    Last Modified: May 04, 2026
    Published: Apr 30, 2026

    CVE-2026-3405

    thinkgem JeeSite Connection path traversal

    Last Modified: Apr 16, 2026
    Published: Mar 02, 2026

    CVE-2026-3404

    thinkgem JeeSite Endpoint CasOutHandler.java xml external entity reference

    Last Modified: Apr 16, 2026
    Published: Mar 02, 2026
    Items Per Page
    Thinkgem Vulnerabilities & Security CVEs | CVE-DB