CVE-2024-35548
A SQL injection vulnerability in Mybatis plus versions below 3.5.6 allows remote attackers to obtain database information via a Boolean blind injection. NOTE: the vendor's position is that this can only occur in a misconfigured application; the documentation discusses how to develop applications that avoid SQL injection.
Learn more about our Cis Benchmark Audit For Microsoft Sql Server.
Learn more about our Cis Benchmark Audit For Microsoft Sql Server.