CVE-2022-45207
Critical · CVSS 9.8jeecg-boot (jeecg-module-system) — SQL Injection (CWE-89)
- CVSS
- 9.8
- nvd
- EPSS
- —
- KEV
- No
- Class
- oss containerizable
- CWE-89, CWE-89
Description
Jeecg-boot v3.4.3 was discovered to contain a SQL injection vulnerability via the component updateNullByEmptyString.
Search profile — drives PoC discovery
Symbols updateNullByEmptyStringjeecg-module-systemorg.jeecgframework.bootjeecg-boot
Keywords CVE-2022-45207jeecg-boot SQL injectionupdateNullByEmptyStringjeecg-module-system SQLijeecg-boot v3.4.3 vulnerabilityjeecg-boot PoCjeecg-boot exploit
Versions: 3.4.3
Ranked PoCs (2) — best first
Heuristic ranking — not yet expert-vetted. Scored on structure + provenance, not execution.
- ★ 0
- ★ 0cyb3r-w0lf/nuclei-template-collection needs reviewtrickest
Recall-favoring discovery; ranking by the Stage-4 scorer (Adam's rubric). Scanner/aggregator repos are hidden.
Affected packages
| Maven | org.jeecgframework.boot:jeecg-module-system | 0 → 3.4.4 |
References
Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T12:30:39.000Z