CVE-2026-75978 | xianrendzw EasyReport up to 2.0.17.0522_Beta QueryerFactory DataSourceController.java DataSourceController.add queryerClass permission (Issue 83)
A vulnerability was found in xianrendzw EasyReport up to 2.0.17.0522_Beta and classified as critical. The affected element is the function DataSourceController.add of the file DataSourceController.java of the component QueryerFactory. Such manipulation of the argument queryerClass leads to permission issues.
This vulnerability is uniquely identified as CVE-2026-75978. The attack can be launched remotely. Moreover, an exploit is present.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More