Metrics
Affected Vendors & Products
Fri, 10 Apr 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 10 Apr 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jeecg
Jeecg jeecgboot |
|
| Vendors & Products |
Jeecg
Jeecg jeecgboot |
Fri, 10 Apr 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in JeecgBoot up to 3.9.1. This impacts an unknown function of the component SysAnnouncementController. Such manipulation leads to improper authorization. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor confirmed the issue and will provide a fix in the upcoming release. | |
| Title | JeecgBoot SysAnnouncementController improper authorization | |
| Weaknesses | CWE-266 CWE-285 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-10T01:45:14.036Z
Updated: 2026-04-10T17:05:03.875Z
Reserved: 2026-04-09T13:03:06.047Z
Link: CVE-2026-5999
Updated: 2026-04-10T17:04:58.803Z
Status : Received
Published: 2026-04-10T03:16:04.053
Modified: 2026-04-10T03:16:04.053
Link: CVE-2026-5999
No data.