Unrated severityNVD Advisory· Published Aug 31, 2026
CVE-2026-75460
CVE-2026-75460
Description
XueZhiSi Open Source Exam System <= 3.9.0 has a privilege escalation vulnerability in the teacher-end interface POST /api/teacher/user/page/list. The role parameter in UserPageRequestVM is fully controllable by the requester.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <=3.9.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.