First published: Mon Mar 06 2023(Updated: )
jeecg-boot v3.4.4 was discovered to contain an authenticated SQL injection vulnerability via the building block report component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jeecg Jeecg | =3.4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-24789 is an authenticated SQL injection vulnerability in jeecg-boot v3.4.4.
CVE-2023-24789 has a severity rating of 8.8 (high).
jeecg-boot v3.4.4 is affected by CVE-2023-24789.
To fix CVE-2023-24789, upgrade jeecg-boot to a version that doesn't contain the vulnerability.
Yes, you can find more information about CVE-2023-24789 at the following link: [https://github.com/jeecgboot/jeecg-boot/issues/4511](https://github.com/jeecgboot/jeecg-boot/issues/4511)