Description
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString.
Remediation
References
http://jeecg-boot.com
https://github.com/jeecgboot/jeecg-boot/issues/4127
Related Vulnerabilities
CVE-2022-37616 Vulnerability in npm package xmldom
CVE-2020-7708 Vulnerability in npm package @irrelon/path
CVE-2021-21290 Vulnerability in maven package io.netty:netty-handler
CVE-2018-3738 Vulnerability in maven package org.webjars.npm:protobufjs
CVE-2023-42278 Vulnerability in maven package cn.hutool:hutool-core