CVE-2023-34601: Jeesite

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Jeesite before commit 10742d3 was discovered to contain a SQL injection vulnerability via the component ${businessTable} at /act/ActDao.xml.

Affected products

  • Jeesite Jeesite: before 2023-05-27 (fixed in 2023-05-27)

Published 2023-06-22. Last modified 2026-06-17.