QID 995385
Date Published: 2023-09-25
QID 995385: Java (Maven) Security Update for org.jeecgframework.boot:jeecg-boot-common (GHSA-rwhx-6hx7-pqc8)
SQL injection vulnerbility in jeecgboot jeecg-boot v 3.0, 3.5.3 that allows a remote attacker to execute arbitrary code via a crafted request to the report/jeecgboot/jmreport/queryFieldBySql component.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-rwhx-6hx7-pqc8 for updates and patch information.
Vendor References
- GHSA-rwhx-6hx7-pqc8 -
github.com/advisories/GHSA-rwhx-6hx7-pqc8
CVEs related to QID 995385
Software Advisories
| Advisory ID | Software | Component | Link |
|---|