Lucene search

K
osvGoogleOSV:GHSA-26GR-CVQ3-QXGF
HistoryMay 07, 2021 - 3:53 p.m.

Improper Authentication in Apache Shiro

2021-05-0715:53:18
Google
osv.dev
7

0.007 Low

EPSS

Percentile

79.6%

Apache Shiro before 1.5.2, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an authentication bypass.

References