Known Vulnerabilities for products from Jeesns

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Jeesns".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-38550 json A stored cross-site scripting (XSS) vulnerability in the /weibo/list component of Jeesns v2.0.0 allows attackers to execute a... 5.4 - MEDIUM 2022-09-19 2022-09-22
CVE-2020-19295 json A reflected cross-site scripting (XSS) vulnerability in the /weibo/topic component of Jeesns 1.4.2 allows attackers to execut... 6.1 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19294 json A stored cross-site scripting (XSS) vulnerability in the /article/comment component of Jeesns 1.4.2 allows attackers to execu... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19293 json A stored cross-site scripting (XSS) vulnerability in the /article/add component of Jeesns 1.4.2 allows attackers to execute a... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19292 json A stored cross-site scripting (XSS) vulnerability in the /question/ask component of Jeesns 1.4.2 allows attackers to execute ... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19291 json A stored cross-site scripting (XSS) vulnerability in the /weibo/publishdata component of Jeesns 1.4.2 allows attackers to exe... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19290 json A stored cross-site scripting (XSS) vulnerability in the /weibo/comment component of Jeesns 1.4.2 allows attackers to execute... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19289 json A stored cross-site scripting (XSS) vulnerability in the /member/picture/album component of Jeesns 1.4.2 allows attackers to ... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19288 json A stored cross-site scripting (XSS) vulnerability in the /localhost/u component of Jeesns 1.4.2 allows attackers to execute a... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19287 json A stored cross-site scripting (XSS) vulnerability in the /group/post component of Jeesns 1.4.2 allows attackers to execute ar... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19286 json A stored cross-site scripting (XSS) vulnerability in the /question/detail component of Jeesns 1.4.2 allows attackers to execu... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19285 json A stored cross-site scripting (XSS) vulnerability in the /group/apply component of Jeesns 1.4.2 allows attackers to execute a... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19284 json A stored cross-site scripting (XSS) vulnerability in the /group/comment component of Jeesns 1.4.2 allows attackers to execute... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19283 json A reflected cross-site scripting (XSS) vulnerability in the /newVersion component of Jeesns 1.4.2 allows attackers to execute... 6.1 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19282 json A reflected cross-site scripting (XSS) vulnerability in Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTM... 6.1 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19281 json A stored cross-site scripting (XSS) vulnerability in the /manage/loginusername component of Jeesns 1.4.2 allows attackers to ... 5.4 - MEDIUM 2021-09-09 2021-09-13
CVE-2020-19280 json Jeesns 1.4.2 contains a cross-site request forgery (CSRF) which allows attackers to escalate privileges and perform sensitive... 8.8 - HIGH 2021-09-09 2021-09-22
CVE-2020-18035 json Cross Site Scripting (XSS) in Jeesns v1.4.2 allows remote attackers to execute arbitrary code by injecting commands into the ... 6.1 - MEDIUM 2021-04-29 2021-05-03
CVE-2018-19178 json In JEESNS 1.3, com/lxinet/jeesns/core/utils/XssHttpServletRequestWrapper.java allows stored XSS via an HTML EMBED element, a ... 5.4 - MEDIUM 2018-11-11 2018-12-13
CVE-2018-17886 json An issue was discovered in JEESNS 1.3. The XSS filter in com.lxinet.jeesns.core.utils.XssHttpServletRequestWrapper.java could... 5.4 - MEDIUM 2018-10-02 2018-11-16

Known software with vulnerabilities from Jeesns

Type Vendor Product Version
ApplicationJeesnsJeesns1.2.1

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report