Loading HuntDB...

jumpserver

1 Product 17 CVEs

CVE Severity Distribution (All Time)

Critical
4
High
6
Medium
6
Low
1

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

View all
CVE-2024-40628 CRITICAL 1 year, 1 month ago

JumpServer is an open-source Privileged Access Management (PAM) tool that provides DevOps and IT teams with on-demand and secure access to SSH, RDP, …

CVE-2024-40629 CRITICAL 1 year, 1 month ago

JumpServer is an open-source Privileged Access Management (PAM) tool that provides DevOps and IT teams with on-demand and secure access to SSH, RDP, …

CVE-2024-29202 CRITICAL 1 year, 5 months ago

JumpServer is an open source bastion host and an operation and maintenance security audit system. Attackers can exploit a Jinja2 template injection v…

CVE-2024-29201 CRITICAL 1 year, 5 months ago

JumpServer is an open source bastion host and an operation and maintenance security audit system. Attackers can bypass the input validation mechanism…

CVE-2024-29020 MEDIUM 1 year, 5 months ago

JumpServer is an open source bastion host and an operation and maintenance security audit system. An authorized attacker can obtain sensitive informa…

CVE-2024-29024 MEDIUM 1 year, 5 months ago

JumpServer is an open source bastion host and an operation and maintenance security audit system. An authenticated user can exploit the Insecure Dire…

CVE-2024-24763 MEDIUM 1 year, 6 months ago

JumpServer is an open source bastion host and an operation and maintenance security audit system. Prior to version 3.10.0, attackers can exploit this…

CVE-2023-46138 LOW 1 year, 10 months ago

JumpServer is an open source bastion host and maintenance security audit system that complies with 4A specifications. Prior to version 3.8.0, the def…

CVE-2023-46123 MEDIUM 1 year, 10 months ago

jumpserver is an open source bastion machine, professional operation and maintenance security audit system that complies with 4A specifications. A fl…

CVE-2023-42818 MEDIUM 1 year, 11 months ago

JumpServer is an open source bastion host. When users enable MFA and use a public key for authentication, the Koko SSH server does not verify the cor…