Description
jeecg-boot v3.5.1 was discovered to contain a SQL injection vulnerability via the title parameter at /sys/dict/loadTreeData.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/5173
Related Vulnerabilities
CVE-2021-23567 Vulnerability in npm package colors
CVE-2020-5231 Vulnerability in maven package org.opencastproject:opencast-kernel
CVE-2023-45137 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-templates
CVE-2023-33496 Vulnerability in maven package com.xuxueli:xxl-rpc-core
CVE-2022-24999 Vulnerability in maven package org.webjars.npm:qs