Description
Jeecg P3 Biz Chat 1.0.5 allows remote attackers to read arbitrary files through specific parameters.
Remediation
References
https://carl1l.github.io/2023/05/08/jeecg-p3-biz-chat-1-0-5-jar-has-arbitrary-file-read-vulnerability/
Related Vulnerabilities
CVE-2011-4905 Vulnerability in maven package activemq:activemq
CVE-2021-3827 Vulnerability in maven package org.keycloak:keycloak-server-spi-private
CVE-2021-29446 Vulnerability in npm package jose-node-cjs-runtime
CVE-2017-16116 Vulnerability in maven package org.webjars.npm:string
CVE-2018-16491 Vulnerability in maven package org.webjars.npm:node.extend