Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

janeczku — Vulnerabilities & Security Advisories 18

Browse all 18 CVE security advisories affecting janeczku. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Janeczku is a software component primarily used for data processing and manipulation in enterprise applications. Historically, it has been susceptible to multiple remote code execution vulnerabilities, cross-site scripting flaws, and privilege escalation issues, accounting for its 18 recorded CVEs. The component's complex input validation and insufficient access controls have frequently been exploited, leading to several high-severity incidents. Security researchers have noted its tendency to trust user-supplied data without proper sanitization, making it a consistent target for attackers. Organizations using janeczku should prioritize patching and implement strict input validation to mitigate ongoing risks.

Top products by janeczku: janeczku/calibre-web Calibre-Web
CVE IDTitleCVSSSeverityPublished
CVE-2026-7709 janeczku Calibre-Web Endpoint kobo_auth.py generate_auth_token improper authorization — Calibre-WebCWE-285 6.3 Medium2026-05-03
CVE-2021-3988 Cross-site Scripting (XSS) in janeczku/calibre-web — janeczku/calibre-webCWE-79 6.1AIMediumAI2024-11-15
CVE-2021-3987 Improper Access Control in janeczku/calibre-web — janeczku/calibre-webCWE-284 4.3AIMediumAI2024-11-15
CVE-2021-3986 Information Disclosure in janeczku/calibre-web — janeczku/calibre-webCWE-209 4.3AIMediumAI2024-11-15
CVE-2022-2525 Improper Restriction of Excessive Authentication Attempts in janeczku/calibre-web — janeczku/calibre-webCWE-307 9.1 -2023-04-15
CVE-2023-2106 Weak Password Requirements in janeczku/calibre-web — janeczku/calibre-webCWE-521 9.8 -2023-04-15
CVE-2022-0990 Server-Side Request Forgery (SSRF) in janeczku/calibre-web — janeczku/calibre-webCWE-918 9.4 -2022-04-04
CVE-2022-0939 Server-Side Request Forgery (SSRF) in janeczku/calibre-web — janeczku/calibre-webCWE-918 9.4 -2022-04-04
CVE-2022-0406 Improper Authorization in janeczku/calibre-web — janeczku/calibre-webCWE-285 5.4 -2022-04-03
CVE-2022-0405 Improper Access Control in janeczku/calibre-web — janeczku/calibre-webCWE-284 5.4 -2022-04-03
CVE-2022-0766 Server-Side Request Forgery (SSRF) in janeczku/calibre-web — janeczku/calibre-webCWE-918 9.4 -2022-03-07
CVE-2022-0767 Server-Side Request Forgery (SSRF) in janeczku/calibre-web — janeczku/calibre-webCWE-918 9.4 -2022-03-07
CVE-2022-0273 Improper Access Control in janeczku/calibre-web — janeczku/calibre-webCWE-284 6.5 -2022-01-30
CVE-2022-0339 Server-Side Request Forgery (SSRF) in janeczku/calibre-web — janeczku/calibre-webCWE-918 9.1 -2022-01-30
CVE-2022-0352 Cross-site Scripting (XSS) - Reflected in janeczku/calibre-web — janeczku/calibre-webCWE-79 6.1 -2022-01-28
CVE-2021-4164 Cross-Site Request Forgery (CSRF) in janeczku/calibre-web — janeczku/calibre-webCWE-352 8.1 -2022-01-17
CVE-2021-4171 Business Logic Errors in janeczku/calibre-web — janeczku/calibre-webCWE-840 8.2 -2022-01-17
CVE-2021-4170 Cross-site Scripting (XSS) - Stored in janeczku/calibre-web — janeczku/calibre-webCWE-79 6.1 -2022-01-16

This page lists every published CVE security advisory associated with janeczku. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.