CVE-2026-108868 | JeecgBoot up to 3.9.5 Announcements sendBusTemplateAnnouncement templateCode/toUser/fromUser improper authorization
A vulnerability, which was classified as problematic, was found in JeecgBoot up to 3.9.5. The impacted element is an unknown function of the file /sys/api/sendBusTemplateAnnouncement of the component Announcements. Executing a manipulation of the argument templateCode/toUser/fromUser can lead to improper authorization.
This vulnerability appears as CVE-2026-108868. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More