Browse all 3 CVE security advisories affecting eflyjason. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Eflyjason operates in cybersecurity research, focusing on identifying vulnerabilities in web applications and enterprise systems. Their work primarily centers on uncovering remote code execution flaws and cross-site scripting vulnerabilities, with a notable emphasis on privilege escalation weaknesses in authentication systems. While no major public incidents are directly attributed to eflyjason, their contributions to CVE records demonstrate consistent findings in server-side injection flaws and insecure direct object references. The researcher maintains a moderate CVE count, suggesting targeted rather than broad-scope vulnerability discovery. Their technical approach appears methodical, prioritizing complex exploitation vectors over common misconfigurations, with particular attention to session management and access control mechanisms.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-11873 | WP BBCode <= 1.8.1 - Authenticated (Contributor+) Stored Cross-Site Scripting — WP BBCodeCWE-79 | 6.4 | Medium | 2025-11-11 |
This page lists every published CVE security advisory associated with eflyjason. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.