CVE-2023-41578: Path Traversal
Jeecg boot up to v3.5.3 was discovered to contain an arbitrary file read vulnerability via the interface /testConnection.
Other sources
Jeecg boot up to v3.5.3 was discovered to contain an arbitrary file read vulnerability via the interface /testConnection.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-41578?
CVE-2023-41578 is an arbitrary file read vulnerability in Jeecg boot up to v3.5.3 via the `/testConnection` interface.
How severe is CVE-2023-41578?
CVE-2023-41578 has a severity rating of 7.5 (high).
How does CVE-2023-41578 affect Jeecg boot?
CVE-2023-41578 affects Jeecg boot up to v3.5.3.
How can I fix CVE-2023-41578?
To fix CVE-2023-41578, update your Jeecg boot version to a version higher than or equal to 3.5.3.
Where can I find more information about CVE-2023-41578?
You can find more information about CVE-2023-41578 at the following references: [NVD](https://nvd.nist.gov/vuln/detail/CVE-2023-41578), [GitHub Issue](https://github.com/Snakinya/Bugs/issues/1), [GitHub Advisory](https://github.com/advisories/GHSA-pm8v-ppx7-8hr4).