PowerjobCVEs & Vulnerabilities

12 CVEs affecting Powerjob products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.

Most Affected Products

powerjob 12
CVE-2025-14518CRITICAL

A vulnerability was identified in PowerJob up to 5.1.2. This vulnerability affects the function checkConnectivity of the file src/main/java/tech/powerjob/common/utils/net/PingPongUtils.java of the component Network Request Handler. The manipulation of the argument targetIp/targetPort leads to server-side request forgery. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

11 Dec 2025
9.8
CVSS
CVE-2025-11581HIGH

A security vulnerability has been detected in PowerJob up to 5.1.2. This vulnerability affects unknown code of the file /openApi/runJob of the component OpenAPIController. Such manipulation leads to missing authorization. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

10 Oct 2025
7.5
CVSS
CVE-2025-11580MEDIUM

A weakness has been identified in PowerJob up to 5.1.2. This affects the function list of the file /user/list. This manipulation causes missing authorization. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks.

10 Oct 2025
5.3
CVSS
CVE-2024-44546CRITICAL

Powerjob >= 3.20 is vulnerable to SQL injection via the version parameter.

12 Nov 2024
9.8
CVSS
CVE-2023-36106HIGH

An incorrect access control vulnerability in powerjob 4.3.2 and earlier allows remote attackers to obtain sensitive information via the interface for querying via appId parameter to /container/list.

17 Aug 2023
7.5
CVSS
CVE-2023-37754CRITICAL

PowerJob v4.3.3 was discovered to contain a remote command execution (RCE) vulnerability via the instanceId parameter at /instance/detail.

28 Jul 2023
9.8
CVSS
CVE-2023-29924CRITICAL

PowerJob V4.3.1 is vulnerable to Incorrect Access Control that allows for remote code execution.

21 Apr 2023
9.8
CVSS
CVE-2023-29926CRITICAL

PowerJob V4.3.2 has unauthorized interface that causes remote code execution.

20 Apr 2023
9.8
CVSS
CVE-2023-29922MEDIUM

PowerJob V4.3.1 is vulnerable to Incorrect Access Control via the create user/save interface.

19 Apr 2023
5.3
CVSS
CVE-2023-29923MEDIUM

PowerJob V4.3.1 is vulnerable to Insecure Permissions. via the list job interface.

19 Apr 2023
5.3
CVSS
CVE-2023-29921MEDIUM

PowerJob V4.3.1 is vulnerable to Incorrect Access Control via the create app interface.

19 Apr 2023
5.3
CVSS
CVE-2020-28865HIGH

An issue was discovered in PowerJob through 3.2.2, allows attackers to change arbitrary user passwords via the id parameter to /appinfo/save.

17 Jun 2022
7.5
CVSS
← PrevPage 1 / 1Next →
Powerjob CVEs & Vulnerabilities — 12 Tracked