CVE-2026-3405Disclosure(jeesite / jeesite)

LOWCVSS 8.1 · HIGH

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Prioritize remediation for jeesite jeesite systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

A vulnerability has been found in thinkgem JeeSite up to 5.15.1. The affected element is an unknown function of the component Connection Handler. The manipulation leads to path traversal. It is possible to initiate the attack remotely. The attack is considered to have high complexity. The exploitability is described as difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-22

Priority

LOW

Exploitation

ACTIVE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • jeesite

Threat summary

  • Active exploitation appears in 1 classified signals
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-03-02); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
jeesite

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-03-02: 1Mentions · 2026-03-03: 1Active Exploitation · 2026-03-03: 1Technical Details · 2026-03-02: 103-0203-03
Signal classification2 categories
Disclosure
150.0%
Active Exploitation
150.0%
Referenced assets2 URLs
By indicator
Classification over time
DateTotalLabels
2026-03-021
Disclosure1
2026-03-031
Active Exploitation1
Full discourse2 posts
  • VulDB 🛡@vuldb
    Active Exploitation

    Our CTI team identified a lot of activities targeting thinkgem JeeSite (CVE-2026-3405) https://vuldb.com/?ctiid.348300

    Post summary

    CTI team reports widespread activity targeting thinkgem JeeSite CVE-2026-3405, indicating active exploitation in the wild.

    0000079
    2.1K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-3405 - thinkgem JeeSite Connection path traversal Intel Report: https://ift.tt/SGInkX9

    Post summary

    A threat alert cites CVE-2026-3405, a path traversal flaw in thinkgem JeeSite Connection, and links to an Intel report for further details.

    0000040
    342 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appjeesitejeesite---

Explore more