CVE-2025-63686: Guominjim Personmanage

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

There is an arbitrary file download vulnerability in GuoMinJim PersonManage thru commit 5a02b1ab208feacf3a34fc123c9381162afbaa95 (2020-11-23) in the document query function under the Download Center menu in the PersonManage system.

Affected products

  • Guominjim Personmanage: up to and including 1.0

Published 2025-11-07. Last modified 2026-06-17.