The JeecgBoot application is vulnerable to SQL Injection via the `getTotalData` endpoint. An attacker can exploit this vulnerability to extract sensitive information from the database by injecting SQL commands.
id: CVE-2024-48307
info:
name: JeecgBoot v3.7.1 - SQL Injection
author: lbb,s4e-io
severity:
...