GHSA-mmmh-wcxm-2wr4
Spring Security authorization rules can be bypassed via forward or include dispatcher types
CVEs:GHSA-mmmh-wcxm-2wr4
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).
The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.
Spring Security authorization rules can be bypassed via forward or include dispatcher types
CVEs:GHSA-mmmh-wcxm-2wr4
GHSA-r5cr-5j3q-vpf6
CVEs:GHSA-r5cr-5j3q-vpf6
CVEs:CVE-2022-31691
spring-security-oauth2-client vulnerable to Privilege Escalation
CVEs:GHSA-32vj-v39g-jh23
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.