Description
Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /sys/user/queryUserComponentData.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3348
Related Vulnerabilities
CVE-2022-26612 Vulnerability in maven package org.apache.hadoop:hadoop-common
CVE-2021-23358 Vulnerability in maven package org.webjars.npm:underscore
CVE-2022-43430 Vulnerability in maven package com.compuware.jenkins:compuware-topaz-for-total-test
CVE-2021-32860 Vulnerability in maven package org.webjars.npm:izimodal
CVE-2020-28281 Vulnerability in npm package set-object-value