CVE-2026-108671: JeecgBoot through 3.9.5 Missing Authorization via /airag/airagMcp/queryById
JeecgBoot through 3.9.5 contains a missing authorization vulnerability that allows any authenticated user to read MCP server configurations because the queryById permission check is commented out. Attackers can obtain record ids from the unguarded /airag/app/queryById endpoint and retrieve MCP endpoint URLs, headers, and outbound authentication tokens.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
Any authenticated JeecgBoot user can exploit it. The attacker does not need elevated privileges or user interaction.
What information can be exposed?
An attacker can retrieve MCP server configuration records, including MCP endpoint URLs, headers, and outbound authentication tokens.
How does an attacker obtain the record IDs needed for the affected endpoint?
Record IDs can be obtained through the unguarded /airag/app/queryById endpoint, then used with /airag/airagMcp/queryById to retrieve MCP configuration data.
How can defenders check whether they are affected?
JeecgBoot versions through 3.9.5 are affected. Review whether authenticated low-privilege users can call /airag/app/queryById to obtain IDs and /airag/airagMcp/queryById to read MCP configuration records.