Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6270
HistoryMay 10, 2018 - 7:20 a.m.

Unauthorised Access Through Method Security

2018-05-1007:20:11
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.004 Low

EPSS

Percentile

75.2%

spring-security-config is vulnerable to unauthorized access through method security. It is possible because it does not check the authenticated users hold the required authority to access the methods.

References