Known Vulnerabilities for products from Fit2cloud
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Fit2cloud".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57172 json | Not Provided | 2026-07-07 | 2026-07-08 | |
| CVE-2026-42463 json | SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.8.0, SQLBot contains a Cross-W... | Not Provided | 2026-05-13 | 2026-05-15 |
| CVE-2026-33324 json | SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. In versions 1.7.0 and earlier, the Text2S... | Not Provided | 2026-05-05 | 2026-05-08 |
| CVE-2025-34430 json | 1Panel versions 1.10.33 through 2.0.15 contain a cross-site request forgery (CSRF) vulnerability in the panel name management... | Not Provided | 2025-12-10 | 2026-07-14 |
| CVE-2025-34429 json | 1Panel versions 1.10.33 - 2.0.15 contain a cross-site request forgery (CSRF) vulnerability in the web port configuration func... | Not Provided | 2025-12-10 | 2026-07-14 |
| CVE-2025-34410 json | 1Panel versions 1.10.33 - 2.0.15 contain a cross-site request forgery (CSRF) vulnerability in the Change Username functional... | Not Provided | 2025-12-10 | 2026-07-14 |
| CVE-2025-15598 json | A vulnerability was found in Dataease SQLBot up to 1.5.1. This impacts the function validateEmbedded of the file backend/apps... | Not Provided | 2026-03-03 | 2026-04-29 |
| CVE-2025-15597 json | A vulnerability has been found in Dataease SQLBot up to 1.4.0. This affects an unknown function of the file backend/apps/syst... | Not Provided | 2026-03-02 | 2026-04-29 |
| CVE-2025-14117 json | A vulnerability has been found in fit2cloud Halo 2.21.10. Impacted is an unknown function. The manipulation leads to cross-si... | Not Provided | 2025-12-06 | 2026-04-29 |
| CVE-2023-48193 json | Insecure Permissions vulnerability in JumpServer GPLv3 v.3.8.0 allows a remote attacker to execute arbitrary code via bypassi... | Not Provided | 2023-11-28 | 2026-07-09 |
| CVE-2023-46138 json | JumpServer is an open source bastion host and maintenance security audit system that complies with 4A specifications. Prior t... | 5.3 - MEDIUM | 2023-10-31 | 2023-11-08 |
| CVE-2023-46123 json | jumpserver is an open source bastion machine, professional operation and maintenance security audit system that complies with... | 5.3 - MEDIUM | 2023-10-25 | 2023-11-01 |
| CVE-2023-44397 json | CloudExplorer Lite is an open source, lightweight cloud management platform. Prior to version 1.4.1, the gateway filter of Cl... | 9.8 - CRITICAL | 2023-10-30 | 2023-11-06 |
| CVE-2023-43652 json | JumpServer is an open source bastion host. As an unauthenticated user, it is possible to authenticate to the core API with a ... | 9.1 - CRITICAL | 2023-09-27 | 2023-10-02 |
| CVE-2023-43651 json | JumpServer is an open source bastion host. An authenticated user can exploit a vulnerability in MongoDB sessions to execute a... | 9.9 - CRITICAL | 2023-09-27 | 2023-10-02 |
| CVE-2023-43650 json | JumpServer is an open source bastion host. The verification code for resetting user's password is vulnerable to brute-force a... | 7.4 - HIGH | 2023-09-27 | 2023-10-02 |
| CVE-2023-42820 json | JumpServer is an open source bastion host. This vulnerability is due to exposing the random number seed to the API, potential... | 8.2 - HIGH | 2023-09-27 | 2023-09-29 |
| CVE-2023-42819 json | JumpServer is an open source bastion host. Logged-in users can access and modify the contents of any file on the system. A us... | 8.8 - HIGH | 2023-09-27 | 2023-09-29 |
| CVE-2023-42818 json | JumpServer is an open source bastion host. When users enable MFA and use a public key for authentication, the Koko SSH server... | 9.8 - CRITICAL | 2023-09-27 | 2023-10-02 |
| CVE-2023-42442 json | JumpServer is an open source bastion host and a professional operation and maintenance security audit system. Starting in ver... | 5.3 - MEDIUM | 2023-09-15 | 2023-09-20 |