HIGHVulnerability
Verified
Global
NVD HIGH: CVE-2026-19000 — A vulnerability was identified in JeecgBoot up to 3.9.2. The affected element is...
·Source: NIST NVD
Updated:
Executive Summary
A vulnerability was identified in JeecgBoot up to 3.9.2. The affected element is an unknown function of the file /airag/chat/send of the component Anonymous Chat Attachment Parser. The manipulation leads to server-side request forgery. The attack can be initiated remotely. The exploit is publicly available and might be used. A fix is planned for the upcoming release.
Analysis
A vulnerability was identified in JeecgBoot up to 3.9.2. The affected element is an unknown function of the file /airag/chat/send of the component Anonymous Chat Attachment Parser. The manipulation leads to server-side request forgery. The attack can be initiated remotely. The exploit is publicly available and might be used. A fix is planned for the upcoming release. CVSS Score: 7.3. Published: 2026-08-06T06:16:32.993.