Description
jeecg-boot v3.5.1 was discovered to contain a SQL injection vulnerability via the title parameter at /sys/dict/loadTreeData.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/5173
Related Vulnerabilities
CVE-2020-26217 Vulnerability in maven package xstream:xstream
CVE-2022-36067 Vulnerability in npm package vm2
CVE-2023-47324 Vulnerability in maven package org.silverpeas.core:silverpeas-core
CVE-2019-10768 Vulnerability in maven package org.webjars.bowergithub.angular:angular
CVE-2019-10744 Vulnerability in maven package org.fujion.webjars:lodash