CVE-2025-8963 | jeecgboot JimuReport up to 2.1.1 Data Large Screen Template testConnection deserialization (Issue 4010)
A vulnerability was found in jeecgboot JimuReport up to 2.1.1. It has been rated as critical. Affected by this issue is some unknown functionality of the file /drag/onlDragDataSource/testConnection of the component Data Large Screen Template. The manipulation leads to deserialization.
This vulnerability is handled as CVE-2025-8963. The attack may be launched remotely. There is no exploit available.
The vendor response to the GitHub issue report is: "Modified, next version updated".