Description
odata4j 0.7.0 allows ExecuteCountQueryCommand.java SQL injection. NOTE: this product is apparently discontinued.
Remediation
References
https://groups.google.com/d/msg/odata4j-discuss/_lBwwXP30g0/Av6zkZMdBwAJ
Related Vulnerabilities
CVE-2021-27516 Vulnerability in npm package urijs
CVE-2019-15532 Vulnerability in npm package cyberchef
CVE-2019-14862 Vulnerability in maven package li.rudin.mavenjs:knockout
CVE-2021-23329 Vulnerability in npm package nested-object-assign
CVE-2022-43424 Vulnerability in maven package com.compuware.jenkins:compuware-xpediter-code-coverage