Description
Jeecg P3 Biz Chat 1.0.5 allows remote attackers to read arbitrary files through specific parameters.
Remediation
References
https://carl1l.github.io/2023/05/08/jeecg-p3-biz-chat-1-0-5-jar-has-arbitrary-file-read-vulnerability/
Related Vulnerabilities
CVE-2020-17527 Vulnerability in maven package org.apache.tomcat:tomcat-coyote
CVE-2020-23262 Vulnerability in maven package net.mingsoft:ms-mcms
CVE-2019-10765 Vulnerability in npm package iobroker.admin
CVE-2020-12265 Vulnerability in maven package org.webjars.npm:decompress
CVE-2022-22963 Vulnerability in maven package org.springframework.cloud:spring-cloud-function-core