Report Anji Plus Report

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Anji Plus Report.

By the Year

In 2026 there have been 0 vulnerabilities in Anji Plus Report. Report did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 1 9.80
2023 1 9.80
2022 1 8.80

It may take a day or so for new Report vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Anji Plus Report Security Vulnerabilities

anji-plus AJ-Report Auth Bypass via Swagger-UI Param
CVE-2024-7314 9.8 - Critical - August 02, 2024

anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP requests to bypass authentication and execute arbitrary Java on the victim server. Exploitation evidence was observed by the Shadowserver Foundation on 2025-02-05 UTC.

Authentication Bypass Using an Alternate Path or Channel

Report v0.9.8.6 SSRF Vulnerability (CVE-2022-46973)
CVE-2022-46973 9.8 - Critical - March 03, 2023

Report v0.9.8.6 was discovered to contain a Server-Side Request Forgery (SSRF) vulnerability.

SSRF

AJ-Report 0.9.8.6 Auth Bypass via JWT Spoofing
CVE-2022-42983 8.8 - High - October 17, 2022

anji-plus AJ-Report 0.9.8.6 allows remote attackers to bypass login authentication by spoofing JWT Tokens.

Authentication Bypass by Spoofing

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Anji Plus Report or by Anji Plus? Click the Watch button to subscribe.

Anji Plus
Vendor

subscribe