Vulnerabilidades en JHipster
4 resultadosAnálisis Vexday
JHipster apresenta footprint mínimo de vulnerabilidades com apenas 1 CVE catalogado na base, sem registros de exploração ativa ou severidade crítica. A vulnerabilidade identificada relaciona-se a controle de acesso inadequado (CWE-284), porém sua antiguidade sugere que o risco foi mitigado ou permanece inativo no ecossistema.
CVE-2022-24815HIGHSQL Injection when creating an application with Reactive SQL backend EPSS 1.4%CVE-2020-4072MEDIUMLog Forging in generator-jhipster-kotlinEPSS 1.2%CVE-2025-31119HIGHCWE-470 in generator-jhipster-entity-audit when having Javers selected as Entity Audit FrameworkEPSS 0.5%CVE-2025-43712LOWJHipster before v.8.9.0 allows privilege escalation via a modified authorities parameter. Upon registering in the JHipster portal and logginEPSS 0.2%