Lucene search

K
osvGoogleOSV:GHSA-V98J-7CRC-WVRJ
HistoryFeb 09, 2022 - 10:03 p.m.

Authentication bypass in Apache Shiro

2022-02-0922:03:57
Google
osv.dev
29

0.36 Low

EPSS

Percentile

97.2%

Apache Shiro before 1.7.1, when using Apache Shiro with Spring, a specially crafted HTTP request may cause an authentication bypass.

References