zhistaredu has 3 CVEs on record. 3 were published in the last 90 days. The busiest recent month was September 2026 with 3. The median CVSS is 7.3 (high).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.3
- Publish → KEV
- —
- Last 90 days
- 3 prev 0
Worst active — by depth score
zhistaredu vulnerabilities
CVEs affecting zhistaredu, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2026-97877High· 7.3PoCA vulnerability was determined in zhistaredu StarTraining up to 3.8.1
A vulnerability was determined in zhistaredu StarTraining up to 3.8.1. This issue affects the function UserLoginService.createToken of the file application.yml of the component JWT Token Handler. This manipulation of the argument user_id…
CVE-2026-97878High· 7.3PoCA vulnerability was identified in zhistaredu StarTraining up to 3.8.1
A vulnerability was identified in zhistaredu StarTraining up to 3.8.1. Impacted is the function anonymous of the file /druid/index.html of the component Druid Console. Such manipulation leads to missing authentication. The attack may be …
CVE-2026-97879Medium· 5.3PoCA security flaw has been discovered in zhistaredu StarTraining up to 3.8.1
A security flaw has been discovered in zhistaredu StarTraining up to 3.8.1. The affected element is an unknown function of the file SecurityConfig.java of the component api-docs Endpoint. Performing a manipulation results in missing auth…