Known Vulnerabilities for X-SpringBoot by Yzcheng90
Listed below are 7 of the newest known vulnerabilities associated with "X-SpringBoot" by "Yzcheng90".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100192 json | X-SpringBoot through 6.0 exposes appKey and appSecret credentials in the GET /application/manager/select endpoint without aut... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-97064 json | X-SpringBoot through 6.0 ships with a hardcoded static master login verification code 172839 enabled by default in the databa... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-97063 json | X-SpringBoot through 6.0 returns login verification codes in HTTP responses from unauthenticated endpoints GET /sys/mobile/co... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-97060 json | X-SpringBoot through 6.0 lacks object-level authorization in user management endpoints, allowing sub-administrators to modify... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-90598 json | A vulnerability was detected in jaygajera17 E-commerce-project-springBoot up to 5e74a46b4b70623d0e4a0c9c4aee3bd1777185d2. The... | Not Provided | 2026-09-13 | 2026-09-16 |
| CVE-2026-90563 json | A vulnerability was determined in maliangnansheng bbs-springboot 3.0.0. This affects the function utils.toToc of the file Art... | Not Provided | 2026-09-13 | 2026-09-16 |
| CVE-2026-79571 json | Incorrect access control in the SellerAuthorizeAspect component of springboot-project v1.0.0 allows unauthenticated attackers... | Not Provided | 2026-09-08 | 2026-09-09 |