Skip to main content

CVE-2025-7863: Open Redirect in thinkgem JeeSite

Medium
VulnerabilityCVE-2025-7863cvecve-2025-7863
Published: Sun Jul 20 2025 (07/20/2025, 02:14:06 UTC)
Source: CVE Database V5
Vendor/Project: thinkgem
Product: JeeSite

Description

A vulnerability was found in thinkgem JeeSite up to 5.12.0 and classified as problematic. Affected by this issue is the function redirectUrl of the file src/main/java/com/jeesite/common/web/http/ServletUtils.java. The manipulation of the argument url leads to open redirect. The attack may be launched remotely. The name of the patch is 3d06b8d009d0267f0255acc87ea19d29d07cedc3. It is recommended to apply a patch to fix this issue.

Technical Details

Data Version
5.1
Assigner Short Name
VulDB
Date Reserved
2025-07-19T04:17:02.842Z
Cvss Version
4.0
State
PUBLISHED

Threat ID: 687c5870a83201eaac007e4c

Added to database: 7/20/2025, 2:46:08 AM

Last updated: 7/20/2025, 2:46:08 AM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats