Description
jeecg-boot v3.5.1 was discovered to contain a SQL injection vulnerability via the title parameter at /sys/dict/loadTreeData.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/5173
Related Vulnerabilities
CVE-2019-14653 Vulnerability in maven package org.webjars.bower:editor.md
CVE-2021-3810 Vulnerability in npm package code-server
CVE-2023-49299 Vulnerability in maven package org.apache.dolphinscheduler:dolphinscheduler-master
CVE-2020-7736 Vulnerability in npm package bmoor
CVE-2020-36179 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind