Aitangbao's vulnerability footprint centers on its SpringBoot Manager product, a component deployed across web application environments. The recurring exposure reflects application-layer input-handling weaknesses, particularly cross-site scripting and code injection flaws inherent to web-facing framework integrations. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Aitangbao over time
Signals from CVEs in this vendor scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-2211MEDIUM A vulnerability was found in aitangbao springboot-manager 3.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /sysDictDetail/add. Th | Mar 11, 2025 | 4.8 | 17 | NO | NO |
CVE-2024-24062MEDIUM springboot-manager v1.6 is vulnerable to Cross Site Scripting (XSS) via /sys/role. | Feb 1, 2024 | 5.4 | 17 | NO | NO |
CVE-2024-24060MEDIUM springboot-manager v1.6 is vulnerable to Cross Site Scripting (XSS) via /sys/user. | Feb 1, 2024 | 5.4 | 17 | NO | NO |
CVE-2024-24059MEDIUM springboot-manager v1.6 is vulnerable to Arbitrary File Upload. The system does not filter the suffixes of uploaded files. | Feb 1, 2024 | 5.4 | 17 | NO | NO |
CVE-2025-2210MEDIUM A vulnerability has been found in aitangbao springboot-manager 3.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /sysJob/add | Mar 11, 2025 | 4.8 | 16 | NO | NO |
CVE-2025-2209MEDIUM A vulnerability, which was classified as problematic, was found in aitangbao springboot-manager 3.0. Affected is an unknown function of the file /sysDict/add. The manipulation of t | Mar 11, 2025 | 4.8 | 16 | NO | NO |
CVE-2025-2208MEDIUM A vulnerability, which was classified as problematic, has been found in aitangbao springboot-manager 3.0. This issue affects some unknown processing of the file /sysFiles/upload of | Mar 11, 2025 | 4.8 | 16 | NO | NO |
CVE-2025-2207MEDIUM A vulnerability classified as problematic was found in aitangbao springboot-manager 3.0. This vulnerability affects unknown code of the file /sys/dept. The manipulation of the argu | Mar 11, 2025 | 4.8 | 16 | NO | NO |
CVE-2025-2206MEDIUM A vulnerability classified as problematic has been found in aitangbao springboot-manager 3.0. This affects an unknown part of the file /sys/permission. The manipulation of the argu | Mar 11, 2025 | 4.8 | 16 | NO | NO |
CVE-2024-24061MEDIUM springboot-manager v1.6 is vulnerable to Cross Site Scripting (XSS) via /sysContent/add. | Feb 1, 2024 | 5.4 | 15 | NO | NO |
Signals from CVEs in this vendor scope (10 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aitangbao.
Media articles that mention a CVE ID that affects a product developed by Aitangbao — matched by CVE ID, not by vendor name.