Lucene search

K
osvGoogleOSV:GHSA-VPFP-5GWQ-G533
HistoryNov 17, 2021 - 11:15 p.m.

Improper Authentication in Apache ShenYu Admin

2021-11-1723:15:30
Google
osv.dev
19
apache shenyu
authentication
flaw
jwt
bypass

EPSS

0.876

Percentile

98.7%

A flaw was found in Apache ShenYu Admin. The incorrect use of JWT in ShenyuAdminBootstrap allows an attacker to bypass authentication. This issue affected Apache ShenYu 2.3.0 and 2.4.0.