Browse all 7 CVE security advisories affecting xujiangfei. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Xujiangfei is primarily associated with web application security research, focusing on identifying vulnerabilities in popular software platforms. Historically, their findings have centered on remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws, particularly in content management systems and e-commerce platforms. While no major public security incidents are directly linked to this researcher, their contributions to CVE records demonstrate consistent focus on high-impact vulnerabilities that could lead to complete system compromise. The researcher's work often emphasizes authentication bypasses and insecure deserialization issues, highlighting a pattern of targeting application logic flaws rather than just surface-level weaknesses.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-3257 | xujiangfei admintwo updateSet cross-site request forgery — admintwoCWE-352 | 4.3 | Medium | 2025-04-04 |
| CVE-2025-3256 | xujiangfei admintwo updateSet access control — admintwoCWE-284 | 6.3 | Medium | 2025-04-04 |
| CVE-2025-3255 | xujiangfei admintwo home access control — admintwoCWE-284 | 4.3 | Medium | 2025-04-04 |
| CVE-2025-3254 | xujiangfei admintwo add server-side request forgery — admintwoCWE-918 | 6.3 | Medium | 2025-04-04 |
| CVE-2025-3253 | xujiangfei admintwo insertTree cross site scripting — admintwoCWE-79 | 3.5 | Low | 2025-04-04 |
| CVE-2025-3252 | xujiangfei admintwo add cross site scripting — admintwoCWE-79 | 3.5 | Low | 2025-04-04 |
| CVE-2025-3251 | xujiangfei admintwo updateSet cross site scripting — admintwoCWE-79 | 3.5 | Low | 2025-04-04 |
This page lists every published CVE security advisory associated with xujiangfei. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.