Baijunyao develops a focused administrative interface product, BJYAdmin, that serves as a web-based management platform for small-to-medium deployments. Its observed vulnerability profile centers on cross-site scripting weaknesses arising from improper input neutralization during page generation, a class of flaw common to web applications handling user-supplied data.
The number and severity of CVEs published that impact products developed by Baijunyao over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-41351MEDIUM bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/getContent.php | Aug 29, 2024 | 6.1 | 18 | NO | NO |
CVE-2024-41350MEDIUM bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php | Aug 29, 2024 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Baijunyao.
Media articles that mention a CVE ID that affects a product developed by Baijunyao — matched by CVE ID, not by vendor name.