A weakness has been identified in Soarkey StudentManagement and 学生信息管理系统 up to e08f7f1d5015af407aa4cca0ada3dea189b4937e, impacting the Administrative Servlet component. This vulnerability, CVE-2026-82621, allows for remote authorization bypass through manipulation of the 'action' argument in the AdminDao.doGet function. Organizations should verify and mitigate this vulnerability, given its medium CVSS sco [truncated]
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-31T06:17:08.103Z and has not been modified since then. CVE-2026-82620 is a SQL injection vulnerability in Soarkey StudentManagement and 学生信息管理系统 up to e08f7f1d5015af407aa4cca0ada3dea189b4937e, affecting the CourseDao.course_ranking function. Users of Soarkey StudentManagement and 学生信息管理系统, particula [truncated]