Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33026
HistoryNov 18, 2021 - 8:45 a.m.

Privilege Escalation

2021-11-1808:45:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
shenyu-admin privilege escalation bypass authentication vulnerability jwt incorrect use

EPSS

0.876

Percentile

98.7%

shenyu-admin is vulnerable to privilege escalation. The vulnerability exists due to an incorrect use of JWT in ShenyuAdminBootstrap allows an attacker to bypass authentication.