📦

dataease

Vendor: dataease

Actively Exploited 0 CISA KEV List
PoC / Exploits 4 Code Available
Total RCEs 19 Remote Access
Total CVEs 115 Total Indexed
Avg. EPSS 2.79% Exploit Prob.
Latest CVE CVE-2026-8724 May 17

Security Vulnerability Index

Page 8 / 12
6.5 CVSS

An access control issue in the component /api/plugin/uninstall Dataease v1.11.1 allows attackers to arbitrarily uninstall the plugin, a right normally reserved for the administrator.

EPSS: 0.58%
8.8 CVSS

In DataEase v1.6.1, an authenticated user can gain unauthorized access to all user information and can change the administrator password.

EPSS: 1.17%