Description
Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /jeecg-boot/sys/user/queryUserByDepId.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3347
Related Vulnerabilities
CVE-2022-35204 Vulnerability in npm package vite
CVE-2022-25927 Vulnerability in maven package org.webjars.npm:ua-parser-js
CVE-2020-8136 Vulnerability in npm package fastify-multipart
CVE-2019-16728 Vulnerability in npm package dompurify
CVE-2011-0013 Vulnerability in maven package org.apache.tomcat.embed:tomcat-embed-core