Injection Vulnerability in Jeecg Boot from Jeecg
CVE-2024-40489
9.8CRITICAL
What is CVE-2024-40489?
An injection vulnerability exists in Jeecg Boot versions 3.0.0 to 3.5.3, stemming from insufficient character filtering. This flaw allows threat actors to execute arbitrary code on various components by sending carefully crafted HTTP requests. Proper validation and sanitation of input data are critical to mitigate potential exploits that target this security weakness.
