CVE-2026-108629 | Jeecg JeecgBoot up to 3.9.5 Datarule SysDepartPermissionController.java saveDatarule departId/permissionId/dataRuleIds improper authorization

SecurityVulns

A vulnerability was found in Jeecg JeecgBoot up to 3.9.5. It has been declared as problematic. The affected element is the function saveDatarule of the file SysDepartPermissionController.java of the component Datarule Handler. Executing a manipulation of the argument departId/permissionId/dataRuleIds can lead to improper authorization.

This vulnerability is tracked as CVE-2026-108629. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More