Description
odata4j 0.7.0 allows ExecuteJPQLQueryCommand.java SQL injection. NOTE: this product is apparently discontinued.
Remediation
References
https://groups.google.com/d/msg/odata4j-discuss/_lBwwXP30g0/Av6zkZMdBwAJ
Related Vulnerabilities
CVE-2016-10544 Vulnerability in npm package uws
CVE-2023-4863 Vulnerability in npm package electron
CVE-2019-10759 Vulnerability in npm package safer-eval
CVE-2020-2177 Vulnerability in maven package org.jenkins-ci.plugins:copr
CVE-2022-42466 Vulnerability in maven package org.apache.isis.core:isis-applib