Description
odata4j 0.7.0 allows ExecuteCountQueryCommand.java SQL injection. NOTE: this product is apparently discontinued.
Remediation
References
https://groups.google.com/d/msg/odata4j-discuss/_lBwwXP30g0/Av6zkZMdBwAJ
Related Vulnerabilities
CVE-2020-13822 Vulnerability in maven package org.webjars.npm:elliptic
CVE-2013-2134 Vulnerability in maven package org.apache.struts:struts2-core
CVE-2018-17246 Vulnerability in npm package kibana
CVE-2020-28477 Vulnerability in npm package immer
CVE-2019-10432 Vulnerability in maven package org.jenkins-ci.plugins:htmlpublisher