Description
Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /jeecg-boot/sys/user/queryUserByDepId.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3347
Related Vulnerabilities
CVE-2021-25924 Vulnerability in maven package cd.go.plugin:go-plugin-api
CVE-2023-49380 Vulnerability in maven package com.jfinal:jfinal
CVE-2022-39381 Vulnerability in npm package muhammara
CVE-2020-7709 Vulnerability in maven package org.webjars.npm:json-pointer
CVE-2020-7616 Vulnerability in npm package express-mock-middleware