Description
JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryTableDictItemsByCode at org.jeecg.modules.api.controller.SystemApiController.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/4983
Related Vulnerabilities
CVE-2022-4111 Vulnerability in npm package tooljet
CVE-2024-36401 Vulnerability in maven package org.geoserver:gs-wfs
CVE-2023-49381 Vulnerability in maven package com.jfinal:jfinal
CVE-2018-3718 Vulnerability in npm package serve
CVE-2023-37908 Vulnerability in maven package org.xwiki.rendering:xwiki-rendering-xml