Description
SQLite JDBC is a library for accessing and creating SQLite database files in Java. Sqlite-jdbc addresses a remote code execution vulnerability via JDBC URL. This issue impacting versions 3.6.14.1 through 3.41.2.1 and has been fixed in version 3.41.2.2.
Remediation
References
https://github.com/xerial/sqlite-jdbc/releases/tag/3.41.2.2
https://github.com/xerial/sqlite-jdbc/security/advisories/GHSA-6phf-6h5g-97j2
Related Vulnerabilities
CVE-2022-46769 Vulnerability in maven package org.apache.sling:org.apache.sling.cms.ui
CVE-2022-43403 Vulnerability in maven package org.jenkins-ci.plugins:script-security
CVE-2022-42124 Vulnerability in maven package com.liferay:com.liferay.layout.page.template.service
CVE-2023-20860 Vulnerability in maven package org.springframework:spring-webmvc
CVE-2023-30519 Vulnerability in maven package org.jenkins-ci.plugins:quayio-trigger