Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gv85-863m-74jv

Опубликовано: 28 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 4.8
CVSS3: 2.4

Описание

A vulnerability has been found in JeecgBoot up to 3.9.0. The affected element is the function getDeptRoleByUserId of the file /sys/sysDepartRole/getDeptRoleByUserId. Such manipulation of the argument departId leads to information disclosure. The vendor was contacted early about this disclosure but did not respond in any way.

A vulnerability has been found in JeecgBoot up to 3.9.0. The affected element is the function getDeptRoleByUserId of the file /sys/sysDepartRole/getDeptRoleByUserId. Such manipulation of the argument departId leads to information disclosure. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 11%
0.00038
Низкий

4.8 Medium

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 2.4
nvd
около 1 месяца назад

A vulnerability has been found in JeecgBoot up to 3.9.0. The affected element is the function getDeptRoleByUserId of the file /sys/sysDepartRole/getDeptRoleByUserId. Such manipulation of the argument departId leads to information disclosure. The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 11%
0.00038
Низкий

4.8 Medium

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-200