CVE-2026-108871 | JeecgBoot up to 3.9.5 SysDepartRoleController saveDatarule permissionId/roleId/dataRuleIds authorization
A vulnerability identified as critical has been detected in JeecgBoot up to 3.9.5. This vulnerability affects the function saveDatarule of the component SysDepartRoleController. The manipulation of the argument permissionId/roleId/dataRuleIds leads to missing authorization.
This vulnerability is referenced as CVE-2026-108871. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More