zhiyou_erp vulnerabilities
CVEs whose affected-version data names the zhiyou_erp package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2025-11140High· 7.3A vulnerability was identified in Bjskzy Zhiyou ERP up to 11.0
A vulnerability was identified in Bjskzy Zhiyou ERP up to 11.0. Affected by this vulnerability is the function openForm of the component com.artery.richclient.RichClientService. Such manipulation of the argument contentString leads to xm…
▾ Twilightzhiyou-group · zhiyou_erpEPSS 0.62%via NVD
CVE-2025-11139Medium· 6.3A vulnerability was determined in Bjskzy Zhiyou ERP up to 11.0
A vulnerability was determined in Bjskzy Zhiyou ERP up to 11.0. Affected is the function uploadStudioFile of the component com.artery.form.services.FormStudioUpdater. This manipulation of the argument filepath causes path traversal. Remo…
▾ Sunlitzhiyou-group · zhiyou_erpEPSS 0.73%via NVD