Description
jeecg-boot 3.5.0 and 3.5.1 have a SQL injection vulnerability the id parameter of the /jeecg-boot/jmreport/show interface.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/4976
Related Vulnerabilities
CVE-2024-4367 Vulnerability in maven package org.webjars.bowergithub.mozilla:pdfjs-dist
CVE-2018-16485 Vulnerability in npm package m-server
CVE-2023-26128 Vulnerability in npm package keep-module-latest
CVE-2019-17495 Vulnerability in maven package org.webjars:swagger-ui
CVE-2023-48293 Vulnerability in maven package org.xwiki.contrib:xwiki-application-admintools