Skip to main content

Vendor/product archive

ruifang-tech / rebuild CVEs

Beta · best-effort

12 CVEs tagged to ruifang-tech / rebuild1 Critical, 1 High, 7 Medium, 3 Low, 0 Unrated.

CVE-2025-28056

Published May 13, 2025

rebuild v3.9.0 through v3.9.3 has a SQL injection vulnerability in /admin/admin-cli/exec component.

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
22.0
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2024-12665

Published Dec 16, 2024

A vulnerability, which was classified as problematic, was found in ruifang-tech Rebuild 3.8.5. Affected is an unknown function of the component Task Comment Attachment Upload. The…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-12664

Published Dec 16, 2024

A vulnerability, which was classified as problematic, has been found in ruifang-tech Rebuild 3.8.5. This issue affects some unknown processing of the component Project Task Commen…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-1099

Published Jan 31, 2024

A vulnerability was found in Rebuild up to 3.5.5. It has been classified as problematic. Affected is the function getFileOfData of the file /filex/read-raw. The manipulation of th…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-1098

Published Jan 31, 2024

A vulnerability was found in Rebuild up to 3.5.5 and classified as problematic. This issue affects the function QiniuCloud.getStorageFile of the file /filex/proxy-download. The ma…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-1021

Published Jan 29, 2024

A vulnerability, which was classified as critical, has been found in Rebuild up to 3.5.5. Affected by this issue is the function readRawText of the component HTTP Request Handler.…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-1020

Published Jan 29, 2024

A vulnerability classified as problematic was found in Rebuild up to 3.5.5. Affected by this vulnerability is the function getStorageFile of the file /filex/proxy-download. The ma…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-1613

Published Mar 23, 2023

A vulnerability has been found in Rebuild up to 3.2.3 and classified as problematic. This vulnerability affects unknown code of the file /feeds/post/publish. The manipulation lead…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-1612

Published Mar 23, 2023

A vulnerability, which was classified as critical, was found in Rebuild up to 3.2.3. This affects an unknown part of the file /files/list-file. The manipulation leads to sql injec…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-1610

Published Mar 23, 2023

A vulnerability, which was classified as critical, has been found in Rebuild up to 3.2.3. Affected by this issue is some unknown functionality of the file /project/tasks/list. The…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-1495

Published Mar 19, 2023

A vulnerability classified as critical was found in Rebuild up to 3.2.3. Affected by this vulnerability is the function queryListOfConfig of the file /admin/robot/approval/list. T…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-30049

Published May 15, 2022

A Server-Side Request Forgery (SSRF) in Rebuild v2.8.3 allows attackers to obtain the real IP address and scan Intranet information via the fileurl parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-12 of 12 CVEsPage 1 of 1