jeecg-boot 3.5.0 is vulnerable to SQL injection from functionality of the file SysDictMapper.java
of the component Sleep Command Handler
. The attack can be launched remotely and the exploit has been disclosed to the public and may be used.
{ "nvd_published_at": "2023-03-30T22:15:00Z", "github_reviewed_at": "2023-04-07T22:09:37Z", "severity": "CRITICAL", "github_reviewed": true, "cwe_ids": [ "CWE-89" ] }