Description
Dataease v1.11.1 was discovered to contain a SQL injection vulnerability via the parameter dataSourceId.
Remediation
References
https://github.com/dataease/dataease/issues/2430
Related Vulnerabilities
CVE-2023-29517 Vulnerability in maven package org.xwiki.platform:xwiki-platform-office-viewer
CVE-2017-16006 Vulnerability in maven package org.webjars:remarkable
CVE-2020-7656 Vulnerability in npm package jquery
CVE-2023-49210 Vulnerability in npm package openssl
CVE-2017-16184 Vulnerability in npm package scott-blanch-weather-app