{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/jimureport--2.3.4/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-75479"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["jimureport (\u003c= 2.3.4)"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["jeecgboot"],"content_html":"\u003cp\u003eJimuReport versions 2.3.4 and earlier are susceptible to an authentication bypass vulnerability located within the report folder template listing endpoint. This vulnerability enables unauthenticated remote attackers to enumerate report objects and retrieve associated share tokens. By obtaining these tokens, an attacker can bypass authorization controls on protected report endpoints to access full report definitions. This access is significant because report definitions within JimuReport often contain sensitive information, including hardcoded SQL statements, database connection logic, and live query results from connected backend data sources. The vulnerability is categorized under CWE-306 (Missing Authentication for Critical Function).\u003c/p\u003e\n\u003ch2 id=\"attack-chain\"\u003eAttack Chain\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eThe attacker performs reconnaissance on the target JimuReport instance to locate the report template folder listing endpoint.\u003c/li\u003e\n\u003cli\u003eThe attacker sends an unauthenticated HTTP request to the vulnerable endpoint.\u003c/li\u003e\n\u003cli\u003eThe application fails to validate the user's authentication status and returns a listing of reports along with their corresponding share tokens.\u003c/li\u003e\n\u003cli\u003eThe attacker parses the response to extract the target share tokens.\u003c/li\u003e\n\u003cli\u003eThe attacker uses a retrieved share token to perform a subsequent request against protected report endpoints.\u003c/li\u003e\n\u003cli\u003eThe application validates the share token as a legitimate access mechanism for the requested report.\u003c/li\u003e\n\u003cli\u003eThe application returns the full report definition, exposing underlying database structures and query data to the attacker.\u003c/li\u003e\n\u003c/ol\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows for the unauthorized retrieval of sensitive business intelligence, including embedded SQL statements, database schema details, and live data retrieved by the reports. This leads to information disclosure which could facilitate further attacks against backend database infrastructure. There are no currently observed victim counts, but the vulnerability affects all deployments running version 2.3.4 or earlier.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate JimuReport to a patched version immediately as referenced in the JeecgBoot project issues.\u003c/li\u003e\n\u003cli\u003eAudit access logs for anomalous, high-frequency requests to report template listing endpoints from unauthenticated sources.\u003c/li\u003e\n\u003cli\u003eMonitor webserver logs for unauthorized attempts to access report endpoints using share tokens that were not previously distributed to authorized users.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-17T22:51:49Z","date_published":"2026-08-17T22:51:49Z","id":"https://feed.craftedsignal.io/briefs/2026-08-jimureport-auth-bypass/","summary":"JimuReport versions 2.3.4 and earlier contain an authentication bypass vulnerability allowing unauthenticated actors to enumerate reports and exfiltrate sensitive data via leaked share tokens.","title":"Authentication Bypass in JimuReport","url":"https://feed.craftedsignal.io/briefs/2026-08-jimureport-auth-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - Jimureport (\u003c= 2.3.4)","version":"https://jsonfeed.org/version/1.1"}