VendorsDataX Web Projectdatax-weball versions
Vulnerabilities

DataX Web Project DataX Web

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2023-7116
WeiYe-Jing datax-web HTTP POST Request killJob os command injection
Published 2023-12-27 · Modified
9.8EPSS 0.099
CVE-2022-46478
The RPC interface in datax-web v1.0.0 and v2.0.0 to v2.1.2 contains no permission checks by default which allows attackers to execute arbitrary commands via crafted Hessian serialized data.
Published 2023-01-13 · Modified
9.8EPSS 0.011
CVE-2024-12358
WeiYe-Jing datax-web add os command injection
Published 2024-12-09 · Analyzed
8.8EPSS 0.052
CVE-2025-13250
WeiYe-Jing datax-web Job triggerJob access control
Published 2025-11-16 · Analyzed
8.8EPSS 0.004
CVE-2025-13251
WeiYe-Jing datax-web sql injection
Published 2025-11-16 · Analyzed
8.8EPSS 0.004