Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-49001 PoC — Dataease Authentication Bypass Vulnerability

Source
Associated Vulnerability
Title:Dataease Authentication Bypass Vulnerability (CVE-2025-49001)
Description:DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.10, secret verification does not take effect successfully, so a user can use any secret to forge a JWT token. The vulnerability has been fixed in v2.10.10. No known workarounds are available.
File Snapshot

# DataEase JWT Authentication Bypass (CVE-2025-49001) [中文版本(Chinese version)](README.zh-cn.md) Dat ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →