Description
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString.
Remediation
References
http://jeecg-boot.com
https://github.com/jeecgboot/jeecg-boot/issues/4127
Related Vulnerabilities
CVE-2020-7614 Vulnerability in npm package npm-programmatic
CVE-2020-28196 Vulnerability in npm package krb5
CVE-2023-46498 Vulnerability in npm package @evershop/evershop
CVE-2023-24188 Vulnerability in maven package com.bstek.ureport:ureport2-core
CVE-2020-35199 Vulnerability in maven package org.igniterealtime.openfire.plugins:bookmarks