Description
JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryTableDictItemsByCode at org.jeecg.modules.api.controller.SystemApiController.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/4983
Related Vulnerabilities
CVE-2020-10992 Vulnerability in maven package com.linkedin.azkaban:azkaban-common
CVE-2023-42277 Vulnerability in maven package cn.hutool:hutool-core
CVE-2017-16219 Vulnerability in npm package yttivy
CVE-2023-38507 Vulnerability in npm package @strapi/admin
CVE-2013-4378 Vulnerability in maven package net.bull.javamelody:javamelody-core