CVE-2025-60269: Huayi-Tec Jeewms
Critical severity, CVSS 9.4. EPSS: 0.3% chance of exploitation in the next 30 days.
JEEWMS 20250820 is vulnerable to SQL Injection in the exportXls function located in the src/main/java/org/jeecgframework/web/cgreport/controller/excel/CgExportExcelController.java file.
Affected products
- Huayi-Tec Jeewms: version 2025-08-20 only
Published 2025-10-10. Last modified 2026-06-17.