Vulnerability Details CVE-2022-36594
Mapper v4.0.0 to v4.2.0 was discovered to contain a SQL injection vulnerability via the ids parameter at the selectByIds function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.2%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-36594
-
cpe:2.3:a:mybatis:mapper:4.0.0
-
cpe:2.3:a:mybatis:mapper:4.0.1
-
cpe:2.3:a:mybatis:mapper:4.0.3
-
cpe:2.3:a:mybatis:mapper:4.1.0
-
cpe:2.3:a:mybatis:mapper:4.1.1
-
cpe:2.3:a:mybatis:mapper:4.1.2
-
cpe:2.3:a:mybatis:mapper:4.2.0