Description
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString.
Remediation
References
http://jeecg-boot.com
https://github.com/jeecgboot/jeecg-boot/issues/4127
Related Vulnerabilities
CVE-2019-15608 Vulnerability in npm package yarn
CVE-2022-31367 Vulnerability in npm package strapi-plugin-content-type-builder
CVE-2024-36401 Vulnerability in maven package org.geoserver:gs-wms
CVE-2023-38905 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core
CVE-2022-48285 Vulnerability in maven package org.webjars.npm:github-com-stuk-jszip