Security Advisory

CVE-2026-10240

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-01 08:15:08
Last updated 2026-06-02 15:07:35
Assigner VulDB
CVSS score not scored
State PUBLISHED

Description

A vulnerability was identified in JeecgBoot up to 3.9.2. The impacted element is an unknown function of the file /airag/airagModel/test. The manipulation of the argument baseUrl leads to server-side request forgery. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. A fix is planned for the upcoming release.