Critical severity9.8NVD Advisory· Published May 5, 2022· Updated Jun 17, 2026
CVE-2022-27360
CVE-2022-27360
Description
SpringBlade v3.2.0 and below was discovered to contain a SQL injection vulnerability via the component customSqlSegment.
Affected products
3- cpe:2.3:a:bladex:springblade:3.2.0:*:*:*:*:*:*:*
- SpringBlade/SpringBladedescription
- Range: <=3.2.0
Patches
Vulnerability mechanics
References
3- forum.butian.net/share/1089nvdExploitThird Party Advisory
- gitee.com/smallc/SpringBlade/blob/master/blade-service/blade-user/src/main/java/org/springblade/system/user/mapper/UserMapper.xmlnvdExploitThird Party Advisory
- saber.bladex.vipnvdPermissions RequiredThird Party Advisory
News mentions
0No linked articles in our index yet.