DataEase vulnerabilities
CVEs whose affected-version data names the DataEase package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2023-40772Medium· 4.3PoCA directory Traversal vulnerability in DataEase before 1.18.10 allows a remote attacker to obtain sensitive information via a a crafted request to the StaticResourceController.java component.
A directory Traversal vulnerability in DataEase before 1.18.10 allows a remote attacker to obtain sensitive information via a a crafted request to the StaticResourceController.java component.
▾ TwilightDataEase · DataEaseEPSS 1.0%via NVD
CVE-2026-90529Low· 3.5A vulnerability has been found in DataEase up to 2.10.25/2.10.26
A vulnerability has been found in DataEase up to 2.10.25/2.10.26. Affected by this issue is the function buildTooltip of the file core/core-frontend/src/views/chart/components/js/panel/charts/map/symbolic-map.ts of the component Symbolic…
▾ SunlitEPSS 0.20%via NVD