Description
xxl-job 2.2.0 allows Information Disclosure of username, model, and password via job/admin/controller/UserController.java.
Remediation
References
https://www.ccsq8.com/issues.html
Related Vulnerabilities
CVE-2023-30094 Vulnerability in npm package total4
CVE-2016-10546 Vulnerability in npm package pouchdb
CVE-2020-9484 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core
CVE-2023-4863 Vulnerability in npm package electron
CVE-2022-31069 Vulnerability in npm package @ffdc/nestjs-proxy