{"id":"CVE-2022-22880","details":"Jeecg-boot v3.0 was discovered to contain a SQL injection vulnerability via the code parameter in /jeecg-boot/sys/user/queryUserByDepId.","aliases":["GHSA-vh2r-x97c-2vpr"],"modified":"2026-08-27T03:49:42.644300018Z","published":"2022-02-16T21:42:08Z","database_specific":{"cna_assigner":"mitre","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/22xxx/CVE-2022-22880.json"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/22xxx/CVE-2022-22880.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-22880"},{"type":"REPORT","url":"https://github.com/jeecgboot/jeecg-boot/issues/3347"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/jeecgboot/JeecgBoot","events":[{"introduced":"0"},{"last_affected":"812cbce06be3d3bd933daea610727b37b58d7260"}],"database_specific":{"source":"CPE_RANGE","cpe":"cpe:2.3:a:jeecg:jeecg_boot:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"3.0"}]}}],"versions":["v3.0","v2.4.6","v2.4.5","2.4.5","v2.4.3","v2.4.2","v2.4.1","2.4.1","2.4.0","v2.3.0","2.3.0","v2.3","v2.2.1","2.2.0","v2.1.4","v2.1.3","v2.1.1","v2.1.0","v2.0.2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-22880.json"}},{"ranges":[{"type":"GIT","repo":"https://github.com/jeecgboot/jeecgboot","events":[{"introduced":"0"},{"last_affected":"812cbce06be3d3bd933daea610727b37b58d7260"}],"database_specific":{"cpe":"cpe:2.3:a:jeecg:jeecg_boot:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"3.0"}],"source":"CPE_RANGE"}}],"versions":["v3.0","v2.4.6","v2.4.5","2.4.5","v2.4.3","v2.4.2","v2.4.1","2.4.1","2.4.0","v2.3.0","2.3.0","v2.3","v2.2.1","2.2.0","v2.1.4","v2.1.3","v2.1.1","v2.1.0","v2.0.2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-22880.json"}}],"schema_version":"1.9.0"}