Loading HuntDB...

GHSA-wp6c-29r3-jqw9

GitHub Security Advisory

SQL injection in jeecg-boot

✓ GitHub Reviewed CRITICAL Has CVE

Advisory Details

jeecg-boot v3.5.1 was discovered to contain a SQL injection vulnerability via the title parameter at /sys/dict/loadTreeData.

Affected Packages

Maven org.jeecgframework.boot:jeecg-boot-common
Affected versions: 0 (fixed in 3.5.3)

Related CVEs

Key Information

GHSA ID
GHSA-wp6c-29r3-jqw9
Published
July 28, 2023 3:30 PM
Last Modified
August 3, 2023 7:37 PM
CVSS Score
9.0 /10
Primary Ecosystem
Maven
Primary Package
org.jeecgframework.boot:jeecg-boot-common
GitHub Reviewed
✓ Yes

Dataset

Last updated: July 31, 2025 6:36 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.