top of page
perceptive_background_267k.jpg

A vulnerability was identified in PowerJob up to 5.1.2. Impacted is the function MuConnectionManager.getOrCreateConnection of the file powerjob-server/powerjob-…

Published:

31 August 2026 at 00:00:00

Alert date:

31 August 2026 at 23:17:03

Source:

nvd.nist.gov

Click to open the original link from this advisory

Enterprise Applications, Web Technologies

A Server-Side Request Forgery (SSRF) vulnerability was identified in PowerJob up to version 5.1.2. The vulnerability exists in the MuConnectionManager.getOrCreateConnection function within the TestController.java file of the Transport Endpoint component. An attacker can exploit this vulnerability remotely without authentication. A public exploit is already available, increasing the risk of active exploitation. The project was notified via an issue report but has not yet responded or released a patch. The vulnerability affects the powerjob-server-starter module of the PowerJob server. Organizations running PowerJob up to version 5.1.2 are advised to assess their exposure and implement mitigations as the vendor has not addressed the issue.

Technical details

Mitigation steps:

Affected products:

PowerJob up to 5.1.2

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page