Description
JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryTableDictItemsByCode at org.jeecg.modules.api.controller.SystemApiController.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/4983
Related Vulnerabilities
CVE-2023-50730 Vulnerability in maven package org.typelevel:grackle-core_sjs1_2.13
CVE-2020-26870 Vulnerability in npm package dompurify
CVE-2018-6464 Vulnerability in maven package org.webjars.bower:simditor
CVE-2021-4307 Vulnerability in npm package baobab
CVE-2013-4152 Vulnerability in maven package org.springframework:spring-web