Description
jeecg-boot 3.5.0 and 3.5.1 have a SQL injection vulnerability the id parameter of the /jeecg-boot/jmreport/show interface.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/4976
Related Vulnerabilities
CVE-2021-23543 Vulnerability in npm package realms-shim
CVE-2021-43138 Vulnerability in maven package org.webjars.bowergithub.caolan:async
CVE-2019-6284 Vulnerability in maven package org.webjars.npm:node-sass
CVE-2015-9239 Vulnerability in npm package ansi2html
CVE-2012-0392 Vulnerability in maven package com.opensymphony:xwork-core