CVE-2026-108869 | Jeecg JeecgBoot up to 3.9.5 System Announcement sendSysAnnouncement title/content/fromUser/toUser missing authentication
A vulnerability, which was classified as problematic, has been found in Jeecg JeecgBoot up to 3.9.5. The affected element is an unknown function of the file /sys/api/sendSysAnnouncement of the component System Announcement. Performing a manipulation of the argument title/content/fromUser/toUser results in missing authentication.
This vulnerability is reported as CVE-2026-108869. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More