Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Jhumanj

First CVE: Oct 8, 2025Active for: 1 yearTotal CVEs: 9

Jhumanj's vulnerability footprint centers on a single web-based form-building product, OPNForm, where the durable signal is concentrated in access-control and input-handling weaknesses that are characteristic of application-layer form processing. The exposure recurs through missing and improper authorization checks, code injection, and cross-site scripting vulnerabilities, reflecting the authentication and output-encoding demands of form-handling workflows. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
9
Total CVEs
More Total CVEs than 91% of tracked vendors
9.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 99% of tracked vendors
5.4
Avg CVSS Score
Higher Avg CVSS Score than 16% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Jhumanj over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 8, 2025
9 months ago
Most Recent CVE
Oct 8, 2025
292 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-11436HIGH
A vulnerability was detected in JhumanJ OpnForm up to 1.9.3. Affected by this issue is some unknown functionality of the file /answer. The manipulation results in unrestricted uplo
Oct 8, 20258.828NONO
CVE-2025-11438MEDIUM
A vulnerability has been found in JhumanJ OpnForm up to 1.9.3. This vulnerability affects unknown code of the file /custom-domains of the component API Endpoint. Such manipulation
Oct 8, 20256.323NONO
CVE-2025-11435MEDIUM
A security vulnerability has been detected in JhumanJ OpnForm up to 1.9.3. Affected by this vulnerability is an unknown functionality of the file /show/submissions. The manipulatio
Oct 8, 20256.122NONO
CVE-2025-11443MEDIUM
A weakness has been identified in JhumanJ OpnForm up to 1.9.3. This affects an unknown function of the file /api/password/email of the component Forgotten Password Handler. This ma
Oct 8, 20255.921NONO
CVE-2025-11439MEDIUM
A vulnerability was found in JhumanJ OpnForm up to 1.9.3. This issue affects some unknown processing of the file /show/integrations. Performing manipulation results in missing auth
Oct 8, 20254.319NONO
CVE-2025-11437MEDIUM
A flaw has been found in JhumanJ OpnForm up to 1.9.3. This affects an unknown part of the file /api/open/forms/ of the component Form Editor. This manipulation causes cross site sc
Oct 8, 20254.819NONO
CVE-2025-11440MEDIUM
A vulnerability was determined in JhumanJ OpnForm up to 1.9.3. Impacted is an unknown function of the file /edit. Executing manipulation can lead to improper access controls. The a
Oct 8, 20254.318NONO
CVE-2025-11442MEDIUM
A security flaw has been discovered in JhumanJ OpnForm up to 1.9.3. The impacted element is an unknown function of the component API Endpoint. The manipulation results in cross-sit
Oct 8, 20254.317NONO
CVE-2025-11441LOW
A vulnerability was identified in JhumanJ OpnForm up to 1.9.3. The affected element is an unknown function of the component HTTP Header Handler. The manipulation of the argument X-
Oct 8, 20253.717NONO
View all 9 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products9 CVEs
11%
78%
11%
Severity distribution among all CVEs352,785 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network9 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (77.8%)
High2 (22.2%)
Unknown0 (0.0%)
User Interaction
None6 (66.7%)
Unknown0 (0.0%)
Required3 (33.3%)
Privileges Required
Low4 (44.4%)
High1 (11.1%)
None4 (44.4%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (9 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Jhumanj.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Jhumanj — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Jhumanj's Products

View all 1 CNAs →

Top CWEs