CVE-2025-7763 | thinkgem JeeSite up to 5.12.0 Site Controller SiteController.java select redirect (Issue 28 / EUVD-2025-21826)
A vulnerability, which was classified as problematic, was found in thinkgem JeeSite up to 5.12.0. Affected is the function select of the file src/main/java/com/jeesite/modules/cms/web/SiteController.java of the component Site Controller. The manipulation of the argument redirect leads to open redirect.
This vulnerability is traded as CVE-2025-7763. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.