Description
Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /jeecg-boot/sys/user/queryUserByDepId.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3347
Related Vulnerabilities
CVE-2017-16192 Vulnerability in npm package getcityapi.yoehoehne
CVE-2020-7691 Vulnerability in maven package org.webjars.npm:jspdf
CVE-2020-7729 Vulnerability in npm package grunt
CVE-2020-28481 Vulnerability in maven package org.webjars.npm:socket.io
CVE-2022-0239 Vulnerability in maven package edu.stanford.nlp:stanford-corenlp