Org.jeecgframework.boot:jeecg-boot-base
This hub aggregates every CVE we track for Org.jeecgframework.boot:jeecg-boot-base, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
7
CVEs tracked
3
Critical
3
High
0
In CISA KEV
Severity distribution
HIGH3CRITICAL3MEDIUM1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 7 most recently published vulnerabilities affecting Org.jeecgframework.boot:jeecg-boot-base.
- CVE-2021-37305An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and view sensitive information via api uri: /sys/user/querySysUser?username=admin.7.5
- CVE-2021-37306An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and view sensitive information via api uri: api uri:/sys/user/checkOnlyUser?usernam...7.5
- CVE-2021-37304An Insecure Permissions issue in jeecg-boot 2.4.5 allows unauthenticated remote attackers to gain escalated privilege and view sensitive information via the httptrace interface.7.5
- CVE-2021-44585A Cross Site Scripting (XSS) vulnerabilitiy exits in jeecg-boot 3.0 in /jeecg-boot/jmreport/view with a mouseover event.6.1
- CVE-2022-22881Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /sys/user/queryUserComponentData.9.8
- CVE-2022-22880Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /jeecg-boot/sys/user/queryUserByDepId.9.8
- CVE-2021-46089In JeecgBoot 3.0, there is a SQL injection vulnerability that can operate the database with root privileges.9.8
Product normalization is registry-driven with AI assist and human review. How it works