CVE-2024-47074 | DataEase up to 1.18.24 JDBC Connection JdbcProvider.java deserialization (GHSA-jgg7-w629-wcpc)
A vulnerability was found in DataEase up to 1.18.24. It has been classified as very critical. This affects an unknown part of the file backend/src/main/java/io/dataease/provider/datasource/JdbcProvider.java of the component JDBC Connection Handler. The manipulation leads to deserialization.
This vulnerability is uniquely identified as CVE-2024-47074. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.