CVE-2026-108870 | JeecgBoot up to 3.9.5 Save Datarule saveDatarule permissionId/roleId/dataRuleIds privileges management
A vulnerability was found in JeecgBoot up to 3.9.5 and classified as critical. This impacts the function saveDatarule of the component Save Datarule Handler. The manipulation of the argument permissionId/roleId/dataRuleIds results in improper privilege management.
This vulnerability is known as CVE-2026-108870. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More