Description
odata4j 0.7.0 allows ExecuteCountQueryCommand.java SQL injection. NOTE: this product is apparently discontinued.
Remediation
References
https://groups.google.com/d/msg/odata4j-discuss/_lBwwXP30g0/Av6zkZMdBwAJ
Related Vulnerabilities
CVE-2020-8116 Vulnerability in maven package org.webjars.npm:dot-prop
CVE-2016-10590 Vulnerability in npm package cue-sdk-node
CVE-2022-25967 Vulnerability in npm package eta
CVE-2021-26539 Vulnerability in maven package org.webjars.npm:sanitize-html
CVE-2023-48796 Vulnerability in maven package org.apache.dolphinscheduler:dolphinscheduler-api