Apache Shiro before 1.8.0, when using Apache Shiro with Spring Boot, a specially crafted HTTP request may cause an authentication bypass. Users should update to Apache Shiro 1.8.0.
References
Configurations
History
No history.
Information
Published : 2021-09-17 09:15
Updated : 2024-11-21 06:26
NVD link : CVE-2021-41303
Mitre link : CVE-2021-41303
CVE.ORG link : CVE-2021-41303
JSON object : View
Products Affected
oracle
- financial_services_crime_and_compliance_management_studio
apache
- shiro
CWE