Description
Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /jeecg-boot/sys/user/queryUserByDepId.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3347
Related Vulnerabilities
CVE-2023-27480 Vulnerability in maven package org.xwiki.platform:xwiki-platform-xar-model
CVE-2022-35915 Vulnerability in npm package @openzeppelin/contracts
CVE-2022-31023 Vulnerability in maven package com.typesafe.play:play_2.13
CVE-2022-39353 Vulnerability in maven package org.webjars.npm:xmldom
CVE-2021-21342 Vulnerability in maven package com.thoughtworks.xstream:xstream