Description
odata4j 0.7.0 allows ExecuteCountQueryCommand.java SQL injection. NOTE: this product is apparently discontinued.
Remediation
References
https://groups.google.com/d/msg/odata4j-discuss/_lBwwXP30g0/Av6zkZMdBwAJ
Related Vulnerabilities
CVE-2013-2165 Vulnerability in maven package org.richfaces.framework:richfaces-impl
CVE-2022-2466 Vulnerability in maven package io.quarkus:quarkus-smallrye-graphql
CVE-2021-23356 Vulnerability in npm package kill-process-by-name
CVE-2019-10342 Vulnerability in maven package io.jenkins.docker:docker-plugin
CVE-2018-16462 Vulnerability in npm package apex-publish-static-files