Jizhicms v2.5.4 is vulnerable to Server-Side Request Forgery (SSRF) in User Evaluation, Message, and Comment modules.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 10 Apr 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cherry-toto
Cherry-toto jizhicms |
|
| Vendors & Products |
Cherry-toto
Cherry-toto jizhicms |
Thu, 09 Apr 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jizhicms v2.5.4 is vulnerable to Server-Side Request Forgery (SSRF) in User Evaluation, Message, and Comment modules. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-09T14:44:40.458Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-50228
No data.
Status : Received
Published: 2026-04-09T15:16:07.433
Modified: 2026-04-09T15:16:07.433
Link: CVE-2025-50228
No data.
OpenCVE Enrichment
Updated: 2026-04-10T08:54:07Z
Weaknesses
No weakness.