Description
Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /sys/user/queryUserComponentData.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/3348
Related Vulnerabilities
CVE-2021-23327 Vulnerability in npm package apexcharts
CVE-2022-36083 Vulnerability in npm package jose
CVE-2021-32803 Vulnerability in npm package tar
CVE-2019-16728 Vulnerability in maven package org.webjars.bower:dompurify
CVE-2020-8127 Vulnerability in maven package org.webjars.bowergithub.hakimel:reveal.js