Description
Jeecg boot up to v3.5.3 was discovered to contain a SQL injection vulnerability via the component /jeecg-boot/jmreport/show.
Remediation
References
https://github.com/jeecgboot/jeecg-boot/issues/5311
Related Vulnerabilities
CVE-2019-10744 Vulnerability in npm package lodash
CVE-2016-10528 Vulnerability in npm package restafary
CVE-2018-16487 Vulnerability in maven package org.webjars.npm:lodash
CVE-2021-27516 Vulnerability in maven package org.webjars.npm:urijs
CVE-2019-14862 Vulnerability in maven package org.webjars.bower:knockout