Filtered by vendor Mybatis
                         Subscriptions
                    
                    
                
                        Filtered by product Mybatis
                         Subscriptions
                    
                    
                
                    Total
                    2 CVE
                
            | CVE | Vendors | Products | Updated | CVSS v3.1 | 
|---|---|---|---|---|
| CVE-2023-25330 | 1 Mybatis | 1 Mybatis | 2024-11-21 | 9.8 Critical | 
| A SQL injection vulnerability in Mybatis plus below 3.5.3.1 allows remote attackers to execute arbitrary SQL commands via the tenant ID valuer. NOTE: the vendor's position is that this can only occur in a misconfigured application; the documentation discusses how to develop applications that avoid SQL injection. | ||||
| CVE-2020-26945 | 2 Mybatis, Redhat | 2 Mybatis, Jboss Fuse | 2024-11-21 | 8.1 High | 
| MyBatis before 3.5.6 mishandles deserialization of object streams. | ||||
                            
                                
                                
                                    Page 1 of 1.
                                
                                
                            
                        
                    
ReportizFlow