Description
Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /sys/user/queryUserComponentData.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3348
Related Vulnerabilities
CVE-2017-11554 Vulnerability in npm package node-sass
CVE-2020-7784 Vulnerability in npm package ts-process-promises
CVE-2020-11971 Vulnerability in maven package org.apache.camel:camel-core
CVE-2021-25931 Vulnerability in maven package org.opennms:opennms-webapp
CVE-2022-25912 Vulnerability in maven package org.webjars.npm:simple-git