Junglewise Threat Intelligence

CVE-2018-15801: Spring Security vulnerable to Authorization Bypass

CVE-2018-15801 · Severity: low · CVSS 3 · Published 2018-12-20

Technologies: org.springframework.security:spring-security-core (Maven). Vendors: Maven.

Executive brief

Spring Security vulnerable to Authorization Bypass

Affected products

  • Maven org.springframework.security:spring-security-core
  • Maven org.springframework.security:spring-security-oauth2-jose

Related threats