Description
Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /jeecg-boot/sys/user/queryUserByDepId.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3347
Related Vulnerabilities
CVE-2023-2972 Vulnerability in npm package @antfu/utils
CVE-2022-24785 Vulnerability in maven package org.fujion.webjars:moment
CVE-2019-17558 Vulnerability in maven package org.apache.solr:solr-velocity
CVE-2022-23107 Vulnerability in maven package io.jenkins.plugins:warnings-ng
CVE-2021-28100 Vulnerability in maven package com.netflix.priam:priam