[MAVEN:GHSA-V3V9-3JF4-5PXX] Jeecg P3 Biz Chat allows remote attackers to read arbitrary files

Severity High
Affected Packages 1
CVEs 1

Jeecg P3 Biz Chat 1.0.5 allows remote attackers to read arbitrary files through specific parameters.

Package Affected Version
pkg:maven/org.jeecgframework.p3/jeecg-p3-biz-chat <= 1.0.5
ID
MAVEN:GHSA-V3V9-3JF4-5PXX
Severity
high
URL
https://github.com/advisories/GHSA-v3v9-3jf4-5pxx
Published
2023-06-07T21:30:18
(15 months ago)
Modified
2023-11-05T05:03:00
(10 months ago)
Rights
Maven Security Team
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:maven/org.jeecgframework.p3/jeecg-p3-biz-chat org.jeecgframework.p3 jeecg-p3-biz-chat <= 1.0.5
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...