SecAlerts
s

sanluan

Security Risk Profile

25
/100
low

Security Risk Score

Comprehensive risk assessment based on 16 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from April 16, 2024 to present

16
Total CVEs
3
Critical+High
0
Exploited
3
Unpatched

Threat Assessment

Avg CVSS
4.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
3
Critical/High
Risk Level
25/100
low
🆕 1Fresh (<7d)📈 1 in Last 30 Days

Severity Distribution

Critical
0
High
3
Medium
8
Low
5

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
15

Age Distribution

Common Weaknesses (CWE)

1
Path Traversal
2

Most Affected Products

1. Sanluan PublicCMS14
2. PublicCMS PublicCMS8
3. Sanluan Sanluan PublicCMS1
4. sanluan gin-vue-admin1

Recent Vulnerabilities

See more →
CVE-2026-97721
CVSS 2.0EPSS 0%low

Sanluan PublicCMS exportExcel/exportData SysUserAdminController.java CmsContentAdminController authorization

Sep 25, 2026🔧 No Patch
CVE-2026-8740
CVSS 2.1EPSS 0%low

Sanluan PublicCMS templateResult API TemplateResultDirective.java execute special elements used in a template engine

May 17, 2026🔧 No Patch
CVE-2026-8739
CVSS 5.5EPSS 0%medium

Sanluan PublicCMS SafeConfigComponent.java getSignKey hard-coded key

May 17, 2026🔧 No Patch
CVE-2026-8738
CVSS 5.5EPSS 0%medium

Sanluan PublicCMS Trade Payment Flow TradeOrderController.java AccountGatewayComponent.pay logic error

May 17, 2026🔧 No Patch
CVE-2026-8737
CVSS 5.5EPSS 0%medium

Sanluan PublicCMS Trade Address Query TradeAddressListDirective.java execute missing authentication

May 17, 2026🔧 No Patch
CVE-2026-6797
CVSS 5.3EPSS 0%medium

Sanluan PublicCMS DocToHtmlUtils.java ZipSecureFile.setMinflateRatio resource consumption

Apr 21, 2026🔧 No Patch
CVE-2026-6796
CVSS 5.3EPSS 0%medium

Sanluan PublicCMS Failed Login LoginAdminController.java log_login cleartext storage in file

Apr 21, 2026🔧 No Patch
CVE-2026-5987
CVSS 2.0EPSS 0%low

Sanluan PublicCMS FreeMarker Template AbstractFreemarkerView.java AbstractFreemarkerView.doRender special elements used in a template engine

Apr 9, 2026🔧 No Patch
CVE-2026-3289
CVSS 5.3EPSS 0%medium

Sanluan PublicCMS Template Cache Generation TemplateCacheComponent.java saveMetadata path traversal

Feb 27, 2026🔧 No Patch
CVE-2026-2010
CVSS 4.2medium

Sanluan PublicCMS Trade Payment TradePaymentService.java paid improper authorization

Feb 6, 2026

Monitor sanluan in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

sanluan Security Vulnerabilities & Risk Score | 16 CVEs | SecAlerts - SecAlerts