Description
Jeecg boot up to v3.5.3 was discovered to contain an arbitrary file read vulnerability via the interface /testConnection.
Remediation
References
https://github.com/Snakinya/Bugs/issues/1
Related Vulnerabilities
CVE-2023-25572 Vulnerability in maven package org.webjars.npm:react-admin
CVE-2019-16869 Vulnerability in maven package io.netty:netty
CVE-2023-46122 Vulnerability in maven package org.scala-sbt:io_2.13
CVE-2010-4172 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2023-36477 Vulnerability in maven package org.xwiki.contrib:application-ckeditor-ui