CVE-2026-75339
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Aug 28, 2026
Vendor
unknown
Description
The storage endpoint /storage/upload of cjbi admin3 v3.0.0 are missing permission checks. /Any logged-in user can upload arbitrary files, and any anonymous attacker can download them.