CVE-2025-14518: Powerjob

Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability was identified in PowerJob up to 5.1.2. This vulnerability affects the function checkConnectivity of the file src/main/java/tech/powerjob/common/utils/net/PingPongUtils.java of the component Network Request Handler. The manipulation of the argument targetIp/targetPort leads to server-side request forgery. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

Affected products

  • Powerjob Powerjob: up to and including 5.1.2

Published 2025-12-11. Last modified 2026-06-17.