CVE-2023-42268: SQL Injection
Jeecg boot up to v3.5.3 was discovered to contain a SQL injection vulnerability via the component /jeecg-boot/jmreport/show.
Other sources
Jeecg boot up to v3.5.3 was discovered to contain a SQL injection vulnerability via the component /jeecg-boot/jmreport/show.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-42268?
The severity of CVE-2023-42268 is critical.
How does CVE-2023-42268 affect Jeecg boot?
Jeecg boot up to v3.5.3 is affected by the SQL injection vulnerability in the component `/jeecg-boot/jmreport/show`.
What is the affected software for CVE-2023-42268?
The affected software for CVE-2023-42268 is Jeecg boot up to v3.5.3 and Jeecg Jeecg Boot.
How can I fix the SQL injection vulnerability in Jeecg boot?
To fix the SQL injection vulnerability in Jeecg boot, it is recommended to update to a version higher than v3.5.3.
Where can I find more information about CVE-2023-42268?
You can find more information about CVE-2023-42268 at the following references: [Reference 1](https://nvd.nist.gov/vuln/detail/CVE-2023-42268), [Reference 2](https://github.com/jeecgboot/jeecg-boot/issues/5311), [Reference 3](https://github.com/advisories/GHSA-m7vh-pgfq-v4rq)