Description
Jeecg boot up to v3.5.3 was discovered to contain a SQL injection vulnerability via the component /jeecg-boot/jmreport/show.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/5311
Related Vulnerabilities
CVE-2022-35144 Vulnerability in npm package raneto
CVE-2019-10748 Vulnerability in npm package sequelize
CVE-2020-7793 Vulnerability in maven package org.webjars.npm:ua-parser-js
CVE-2023-26486 Vulnerability in maven package org.webjars.npm:vega-functions
CVE-2021-21353 Vulnerability in maven package org.webjars.npm:pug-code-gen