VendorsJishenghuajsherpall versions
Vulnerabilities

Jishenghua Jsherp

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

26CVEs
CVE-2024-24003
jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseResponseInfo findInOutMaterialCount() function of jshERP does not filter `column` and `order` parameters well enough, and an attacker can construct malicious payload to bypass jshERP's protection mechanism in `safeSqlParse` method for sql injection.
Published 2024-02-08 · Modified
9.8EPSS 0.008
CVE-2024-24002
jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.MaterialController: com.jsh.erp.utils.BaseResponseInfo getListWithStock() function of jshERP does not filter `column` and `order` parameters well enough, and an attacker can construct malicious payload to bypass jshERP's protection mechanism in `safeSqlParse` method for sql injection.
Published 2024-02-06 · Modified
9.8EPSS 0.008
CVE-2024-24004
jshERP v3.3 is vulnerable to SQL Injection. The com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseResponseInfo findInOutDetail() function of jshERP does not filter `column` and `order` parameters well enough, and an attacker can construct malicious payload to bypass jshERP's protection mechanism in `safeSqlParse` method for sql injection.
Published 2024-02-06 · Modified
9.8EPSS 0.007
CVE-2024-24001
jshERP v3.3 is vulnerable to SQL Injection. via the com.jsh.erp.controller.DepotHeadController: com.jsh.erp.utils.BaseResponseInfo findallocationDetail() function of jshERP which allows an attacker to construct malicious payload to bypass jshERP's protection mechanism.
Published 2024-02-06 · Modified
9.8EPSS 0.007
CVE-2025-51743
An issue was discovered in jishenghua JSH_ERP 2.3.1. The /materialCategory/addMaterialCategory endpoint is vulnerable to fastjson deserialization attacks.
Published 2025-11-25 · Analyzed
9.8EPSS 0.005
CVE-2025-51742
An issue was discovered in jishenghua JSH_ERP 2.3.1. The /material/getMaterialEnableSerialNumberList endpoint passes the search query parameter directly to parseObject(), introducing a Fastjson deserialization vulnerability that can lead to RCE via JDBC payloads.
Published 2025-11-25 · Analyzed
9.8EPSS 0.005
CVE-2025-51746
An issue was discovered in jishenghua JSH_ERP 2.3.1. The /serialNumber/addSerialNumber endpoint is vulnerable to fastjson deserialization attacks.
Published 2025-11-25 · Analyzed
9.8EPSS 0.005
CVE-2025-51745
An issue was discovered in jishenghua JSH_ERP 2.3.1. The /role/addcan endpoint is vulnerable to fastjson deserialization attacks.
Published 2025-11-25 · Analyzed
9.8EPSS 0.005
CVE-2025-51744
An issue was discovered in jishenghua JSH_ERP 2.3.1. The /user/addUser endpoint is vulnerable to fastjson deserialization attacks.
Published 2025-11-25 · Analyzed
9.8EPSS 0.005
CVE-2026-1546
jishenghua jshERP com.jsh.erp.datasource.mappers.DepotItemMapperEx importItemExcel getBillItemByParam sql injection
Published 2026-01-28 · Analyzed
9.8EPSS 0.004
CVE-2025-55370
Incorrect access control in the component \controller\ResourceController.java of jshERP v3.5 allows unauthorized attackers to obtain all the corresponding ID data by modifying the ID value.
Published 2025-08-21 · Modified
8.8EPSS 0.004
CVE-2025-55368
Incorrect access control in the component \controller\RoleController.java of jshERP v3.5 allows unauthorized attackers to arbitrarily modify the supplier status under any account.
Published 2025-08-21 · Modified
8.8EPSS 0.004
CVE-2025-8839
jshERP Endpoint addUser improper authorization
Published 2025-08-11 · Analyzed
8.8EPSS 0.003
CVE-2025-60801
jshERP up to commit fbda24da was discovered to contain an unauthenticated remote code execution (RCE) vulnerability via the jsh_erp function.
Published 2025-10-24 · Analyzed
8.2EPSS 0.005
CVE-2025-7947
jshERP Account delete improper authorization
Published 2025-07-22 · Analyzed
8.1EPSS 0.004
CVE-2025-60800
Incorrect access control in the /jshERP-boot/user/info interface of jshERP up to commit 90c411a allows attackers to access sensitive information via a crafted GET request.
Published 2025-10-28 · Analyzed
7.5EPSS 0.003
CVE-2025-7566
jshERP SystemConfigController.java exportExcelByParam path traversal
Published 2025-07-14 · Analyzed
7.2EPSS 0.006
CVE-2025-7948
jshERP updatePwd password recovery
Published 2025-07-22 · Analyzed
6.5EPSS 0.004
CVE-2025-8840
jshERP Endpoint deleteBatch improper authorization
Published 2025-08-11 · Analyzed
5.5EPSS 0.004
CVE-2025-55366
Incorrect access control in the component \controller\UserController.java of jshERP v3.5 allows attackers to arbitrarily reset user account passwords and execute a horizontal privilege escalation attack.
Published 2025-08-21 · Modified
5.3EPSS 0.003
CVE-2025-55367
Incorrect access control in the component \controller\SupplierController.java of jshERP v3.5 allows unauthorized attackers to arbitrarily modify the supplier status under any account.
Published 2025-08-21 · Modified
5.3EPSS 0.003
CVE-2025-55371
Incorrect access control in the component /controller/PersonController.java of jshERP v3.5 allows unauthorized attackers to obtain all the information of the handler by executing the getAllList method.
Published 2025-08-21 · Modified
5.3EPSS 0.003
CVE-2025-67344
jshERP v3.5 and earlier is affected by a stored Cross Site Scripting (XSS) vulnerability via the /msg/add endpoint.
Published 2025-12-12 · Analyzed
4.6EPSS 0.002
CVE-2025-67341
jshERP versions 3.5 and earlier are affected by a stored XSS vulnerability. This vulnerability allows attackers to upload PDF files containing XSS payloads. Additionally, these PDF files can be accessed via static URLs, making them accessible to all users.
Published 2025-12-12 · Analyzed
4.6EPSS 0.002
CVE-2026-1549
jishenghua jshERP PluginController uploadPluginConfigFile path traversal
Published 2026-01-28 · Analyzed
4.3EPSS 0.005
CVE-2026-1588
jishenghua jshERP installByPath install path traversal
Published 2026-01-29 · Analyzed
3.3EPSS 0.006