Description
JeecgBoot through 3.9.5 contains a missing authorization vulnerability in the AigcWordTemplateController edit handler that allows any authenticated user to modify word templates. Low-privileged attackers can send PUT or POST requests to /airag/word/edit to overwrite shared templates that other users rely on to generate documents.
Published: 2026-10-10
Score: 5.3 Medium
EPSS: n/a
KEV: No
Impact: Unauthorized modification of shared word templates by authenticated users.
Action: Immediate Patch
AI Analysis

Impact

JeecgBoot versions up to 3.9.5 contain a missing authorization check in the AigcWordTemplateController edit handler, allowing any authenticated user to perform PUT or POST requests to /airag/word/edit. This flaw enables the attacker to overwrite shared word templates that other users rely on for document generation, potentially causing misinformation, regulatory non‑compliance, or denial of service. It is a classic Missing Authorization weakness (CWE-862).

Affected Systems

The affected software is JeecgBoot, all releases up to and including version 3.9.5. No specific sub‑module version constraints are listed, but any instance of the product exposing the /airag/word/edit endpoint is vulnerable.

Risk and Exploitability

The vulnerability carries a CVSS score of 5.3, indicating moderate severity, and no EPSS data is available. It is not currently listed in the CISA KEV catalog. Exploitation requires the attacker to possess valid authentication credentials within the application, after which a simple HTTP request to the vulnerable endpoint can modify templates. The attack path is straightforward and does not require local system access or privilege escalation.

Generated by OpenCVE AI on October 11, 2026 at 00:17 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade JeecgBoot to a version that resolves the missing authorization check, such as a release newer than 3.9.5.
  • If an immediate upgrade is not feasible, restrict access to /airag/word/edit to privileged roles by configuring application‑level access control or a web‑application firewall to enforce role‑based restrictions.
  • If neither upgrade nor access control is possible, disable the edit functionality or apply a custom patch that adds an explicit authorization check before allowing template modifications.

Generated by OpenCVE AI on October 11, 2026 at 00:17 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 10 Oct 2026 22:00:00 +0000

Type Values Removed Values Added
Description JeecgBoot through 3.9.5 contains a missing authorization vulnerability in the AigcWordTemplateController edit handler that allows any authenticated user to modify word templates. Low-privileged attackers can send PUT or POST requests to /airag/word/edit to overwrite shared templates that other users rely on to generate documents.
Title JeecgBoot through 3.9.5 Missing Authorization via /airag/word/edit Endpoint
First Time appeared Jeecg
Jeecg jeecg Boot
Weaknesses CWE-862
CPEs cpe:2.3:a:jeecg:jeecg_boot:*:*:*:*:*:*:*:*
Vendors & Products Jeecg
Jeecg jeecg Boot
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Jeecg Jeecg Boot
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-10-10T21:49:11.936Z

Reserved: 2026-10-10T20:17:28.680Z

Link: CVE-2026-108610

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-10T22:16:34.970

Modified: 2026-10-10T22:16:34.970

Link: CVE-2026-108610

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-11T00:30:16Z

Weaknesses