CVE-2025-70045: Jxcore Jxm

High severity, CVSS 7.4. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue pertaining to CWE-295: Improper Certificate Validation was discovered in jxcore jxm master. The application disables TLS/SSL certificate validation by setting 'rejectUnauthorized': false in HTTPS request options when 'jx_obj.IsSecure' is true

Affected products

  • Jxcore Jxm: affected versions not specified

Published 2026-02-23. Last modified 2026-06-17.