Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 21 Sep 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | jshERP 3.6 contains a privilege escalation vulnerability in the updateOneValueByKeyIdAndType endpoint that allows authenticated users to grant themselves arbitrary roles. Attackers can send a POST request with type=UserRole, their own user ID, and a role ID list to escalate from low-privilege tenant user to tenant administrator. | |
| Title | jshERP 3.6 Privilege Escalation via updateOneValueByKeyIdAndType | |
| First Time appeared |
Jishenghua
Jishenghua jsherp |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:jishenghua:jsherp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Jishenghua
Jishenghua jsherp |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-21T18:16:10.450Z
Reserved: 2026-09-21T14:50:52.043Z
Link: CVE-2026-94411
No data.
Status : Received
Published: 2026-09-21T19:17:20.067
Modified: 2026-09-21T19:17:20.067
Link: CVE-2026-94411
No data.
OpenCVE Enrichment
Updated: 2026-09-21T20:30:18Z
-
CWE-862
Missing Authorization