Executive brief
Spring Framework when used in combination with any versions of Spring Security contains an authorization bypass
Affected products
- Maven org.springframework:spring-core
Junglewise Threat Intelligence
CVE-2018-1258 · Severity: low · CVSS 3 · Published 2018-10-17
Technologies: org.springframework:spring-core (Maven). Vendors: Maven.
Spring Framework when used in combination with any versions of Spring Security contains an authorization bypass