Description
JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryTableDictItemsByCode at org.jeecg.modules.api.controller.SystemApiController.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/4983
Related Vulnerabilities
CVE-2023-29206 Vulnerability in maven package org.xwiki.platform:xwiki-platform-skin-skinx
CVE-2019-6286 Vulnerability in npm package node-sass
CVE-2019-1010266 Vulnerability in maven package org.fujion.webjars:lodash
CVE-2020-7238 Vulnerability in maven package io.netty:netty-all
CVE-2020-7743 Vulnerability in maven package org.webjars.npm:mathjs