Maven package
org.jeecgframework.boot/jeecg-module-system
pkg:maven/org.jeecgframework.boot/jeecg-module-system
Vulnerabilities (5)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2022-47105 | Cri | 9.8 | <= 3.4.4 | — | Jan 19, 2023 | Jeecg-boot v3.4.4 was discovered to contain a SQL injection vulnerability via the component /sys/dict/queryTableData. | |
| CVE-2022-45210 | Med | 4.3 | < 3.4.4 | 3.4.4 | Nov 25, 2022 | Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/deleteRecycleBin. | |
| CVE-2022-45208 | Med | 4.3 | < 3.4.4 | 3.4.4 | Nov 25, 2022 | Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/putRecycleBin. | |
| CVE-2022-45207 | Cri | 9.8 | < 3.4.4 | 3.4.4 | Nov 25, 2022 | Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString. | |
| CVE-2022-45206 | Cri | 9.8 | < 3.4.4 | 3.4.4 | Nov 25, 2022 | Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/duplicate/check. |
- affected <= 3.4.4
Jeecg-boot v3.4.4 was discovered to contain a SQL injection vulnerability via the component /sys/dict/queryTableData.
- affected < 3.4.4fixed 3.4.4
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/deleteRecycleBin.
- affected < 3.4.4fixed 3.4.4
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/user/putRecycleBin.
- affected < 3.4.4fixed 3.4.4
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString.
- affected < 3.4.4fixed 3.4.4
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component /sys/duplicate/check.