Vulnerabilities > Jeecg > Jeecg > 2.4.6

DATE CVE VULNERABILITY TITLE RISK
2024-01-03 CVE-2023-49442 Deserialization of Untrusted Data vulnerability in Jeecg
Deserialization of Untrusted Data in jeecgFormDemoController in JEECG 4.0 and earlier allows attackers to run arbitrary code via crafted POST request.
network
low complexity
jeecg CWE-502
critical
9.8