VulnSea

jishenghua has 9 CVEs on record. Disclosure cadence is accelerating: 9 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 9. The median CVSS is 8.3 (high). None have a confirmed exploitation report. The most common weakness class is CWE-862 (6).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
8.3
Publish → KEV
—
Last 90 days
9 prev 0

Products

  • jshERP 9
9
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

jishenghua vulnerabilities

CVEs affecting jishenghua, newest first. Open any entry for full detail, references, and exploit status.

9 CVEsRSS

CVE-2026-94411High· 8.8PoC
5d ago

jshERP 3.6 contains a privilege escalation vulnerability in the updateOneValueByKeyIdAndType endpoint that allows authenticated users to grant themselves arbitrary roles

jshERP 3.6 contains a privilege escalation vulnerability in the updateOneValueByKeyIdAndType endpoint that allows authenticated users to grant themselves arbitrary roles. Attackers can send a POST request with type=UserRole, their own us…

▾ Midnightjishenghua · jshERPEPSS 0.52%via NVD
CVE-2026-94413Medium· 6.5PoC
5d ago

jshERP through 3.6 fails to redact password hashes in the /user/info endpoint, allowing authenticated users to retrieve unsalted MD5 password digests for any user

jshERP through 3.6 fails to redact password hashes in the /user/info endpoint, allowing authenticated users to retrieve unsalted MD5 password digests for any user. Attackers can request arbitrary user information by supplying user IDs to…

▾ Twilightjishenghua · jshERPEPSS 0.55%via NVD
CVE-2026-94412High· 8.8PoC
5d ago

jshERP through 3.6 contains an authorization bypass vulnerability in the POST /user/resetPwd endpoint that allows authenticated users to reset any other user's password

jshERP through 3.6 contains an authorization bypass vulnerability in the POST /user/resetPwd endpoint that allows authenticated users to reset any other user's password. Attackers can submit a request with an arbitrary target user ID to …

▾ Midnightjishenghua · jshERPEPSS 0.55%via NVD
CVE-2026-94496High· 8.3PoC
5d ago

jshERP through 3.6 fails to validate caller permissions in role management endpoints, allowing authenticated users to modify any role's data scope or delete roles

jshERP through 3.6 fails to validate caller permissions in role management endpoints, allowing authenticated users to modify any role's data scope or delete roles. Attackers can exploit the /role/update and /role/delete endpoints to esca…

▾ Midnightjishenghua · jshERPEPSS 0.46%via NVD
CVE-2026-94495High· 7.1PoC
5d ago

jshERP through 3.6 fails to properly validate user privileges in SystemConfigService.updateSystemConfig, allowing authenticated users to modify tenant system configuration

jshERP through 3.6 fails to properly validate user privileges in SystemConfigService.updateSystemConfig, allowing authenticated users to modify tenant system configuration. Attackers can rewrite or delete tenant-wide settings covering co…

▾ Midnightjishenghua · jshERPEPSS 0.44%via NVD
CVE-2026-94494Medium· 5.0PoC
5d ago

jshERP through 3.6 contains a tenant isolation bypass vulnerability that allows authenticated users to read other tenants' records via the GET /tenant/info endpoint

jshERP through 3.6 contains a tenant isolation bypass vulnerability that allows authenticated users to read other tenants' records via the GET /tenant/info endpoint. Attackers can iterate the primary key to enumerate and access sensitive…

▾ Twilightjishenghua · jshERPEPSS 0.37%via NVD
CVE-2026-94497High· 8.3PoC
5d ago

jshERP through 3.6 fails to validate object ownership in by-id info, update, and delete endpoints across multiple resource types

jshERP through 3.6 fails to validate object ownership in by-id info, update, and delete endpoints across multiple resource types. Authenticated users can read, modify, and delete other users' business objects by submitting direct object …

▾ Midnightjishenghua · jshERPEPSS 0.46%via NVD
CVE-2026-94414Medium· 5.4PoC
5d ago

jshERP through 3.6 is missing an authorization check on the POST /userBusiness/updateBtnStr endpoint that allows authenticated users to modify role button-permission definitions

jshERP through 3.6 is missing an authorization check on the POST /userBusiness/updateBtnStr endpoint that allows authenticated users to modify role button-permission definitions. Attackers can supply arbitrary roleId and btnStr parameter…

▾ Twilightjishenghua · jshERPEPSS 0.38%via NVD
CVE-2026-94501High· 8.8PoC
5d ago

jshERP through 3.6 contains an authorization bypass vulnerability in the userBusiness CRUD endpoints that allows authenticated users to create, modify, or delete authorization-relation rows without privilege checks

jshERP through 3.6 contains an authorization bypass vulnerability in the userBusiness CRUD endpoints that allows authenticated users to create, modify, or delete authorization-relation rows without privilege checks. Attackers can manipul…

▾ Midnightjishenghua · jshERPEPSS 0.55%via NVD
jishenghua vulnerabilities (CVEs) · VulnSea