No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 13 Sep 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in wxiaoqi Spring-Cloud-Platform 3.0.1/3.1.0. This vulnerability affects the function PermissionService.checkUserPermission of the file /rpc/service/PermissionService.java of the component Permission Service. The manipulation leads to missing authorization. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | wxiaoqi Spring-Cloud-Platform Permission Service PermissionService.java PermissionService.checkUserPermission authorization | |
| First Time appeared |
Wxiaoqi
Wxiaoqi spring-cloud-platform |
|
| Weaknesses | CWE-862 CWE-863 |
|
| CPEs | cpe:2.3:a:wxiaoqi:spring-cloud-platform:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Wxiaoqi
Wxiaoqi spring-cloud-platform |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-13T20:45:09.702Z
Reserved: 2026-09-12T18:26:39.486Z
Link: CVE-2026-90594
No data.
Status : Received
Published: 2026-09-13T21:17:02.980
Modified: 2026-09-13T21:17:02.980
Link: CVE-2026-90594
No data.
OpenCVE Enrichment
No data.