CVE-2026-108628 - JeecgBoot through 3.9.5 Missing Authorization via saveDeptRolePermission Endpoint
CVE ID :CVE-2026-108628 Published : Oct. 10, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :JeecgBoot through 3.9.5 contains a missing authorization vulnerability in the saveDeptRolePermission endpoint of SysDepartPermissionController that allows any authenticated user to modify...