Description
In JeecgBoot 3.0, there is a SQL injection vulnerability that can operate the database with root privileges.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3331
Related Vulnerabilities
CVE-2022-25940 Vulnerability in maven package org.webjars.npm:lite-server
CVE-2023-40815 Vulnerability in maven package org.opencrx:opencrx-core-models
CVE-2022-37199 Vulnerability in maven package com.jflyfox:jflyfox_jfinal
CVE-2022-21222 Vulnerability in maven package org.webjars.npm:css-what
CVE-2022-45388 Vulnerability in maven package net.praqma:config-rotator