Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

N1Etzsche0

#14691of 53,630
18.4Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2025-17642
9.8
2025-04-23
Dataease · Dataease · CVE-2025-32966
**Name of the Vulnerable Software and Affected Versions** DataEase versions prior to 2.10.8 **Description** The issue allows authenticated users to complete remote code execution (RCE) through the backend JDBC link. **Recommendations** For versions prior to 2.10.8, update to version 2.10.8 to resolve the issue. As a temporary workaround, consider restricting access to the backend JDBC link until the update is applied.
PT-2025-11211
8.6
2025-03-13
Dataease · Dataease · CVE-2025-27103
Name of the Vulnerable Software and Affected Versions: DataEase versions prior to 2.10.6 Description: DataEase is an open source business intelligence and data visualization tool. A patch bypass issue allows authenticated users to read and deserialize arbitrary files through the background JDBC connection. Recommendations: For versions prior to 2.10.6, update to version 2.10.6 to resolve the issue. As a temporary workaround, consider restricting access to the background JDBC connection until the update is applied.