Jreast operates Japan's East Japan Railway Company systems and infrastructure, representing critical transportation and operational technology where vulnerability disclosure and remediation follow specialized regulatory and safety protocols distinct from commercial software vendors. The sparse documented weaknesses center on insufficient information classifications, reflecting the nature of disclosed vulnerabilities in this operational domain rather than a durable technical pattern. Current exploitation status, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Jreast over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-5954CRITICAL JR East Japan train operation information push notification App for Android version 1.2.4 and earlier allows remote attackers to bypass access restriction to obtain or alter the us | May 17, 2019 | 9.1 | 28 | NO | NO |
CVE-2014-2001MEDIUM The East Japan Railway Company JR East Japan application before 1.2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to o | Jun 19, 2014 | 5.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Jreast.
Media articles that mention a CVE ID that affects a product developed by Jreast — matched by CVE ID, not by vendor name.