CVE-2026-108876 | JeecgBoot up to 3.9.5 SysUserController putCancelQuit tenantId missing authentication
A vulnerability described as problematic has been identified in JeecgBoot up to 3.9.5. This vulnerability affects the function putCancelQuit of the component SysUserController. The manipulation of the argument tenantId results in missing authentication.
This vulnerability is cataloged as CVE-2026-108876. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More