CVE-2020-13933 PUBLISHED

Apache Shiro before 1.6.0, when using Apache Shiro, a specially crafted HTTP request may cause an authentication bypass.

EPSS 69.49% · 98.6th percentile

Risk Scores

EPSS Score
69.49%
98.6th percentile

Affected Products

VendorProductVersions
Ubuntu:22.04:LTSshiro0, 1.3.2-4
Ubuntu:20.04:LTSshiro1.3.2-4ubuntu0.1, 1.3.2-4, 0
Ubuntu:Pro:16.04:LTSshiro0, 1.2.4-1, 1.2.4-1ubuntu0.1~esm1
Ubuntu:Pro:18.04:LTSshiro1.3.2-3~18.04.1, 1.3.2-3~18.04, 1.3.2-2

Timeline

References

Open in Interactive Console →