AntFlow V2.0.0 is vulnerable to Incorrect Access Control. JiMuMDCCommonsRequestLoggingFilter.java retrieves the userid from the request header as the core of the identity verification mechanism, allowing attackers to forge any user identity credential information, thereby causing sensitive information leakage.
CVE-2026-75415
NONE
Updated Aug 27, 2026
Java
n/a:n/a
CVE Details
CVE ID
CVE-2026-75415
Published Date
Aug 27, 2026
Vendor
Java
Severity
NONE
Impact
Minimal impact
Source
View Advisory