Junglewise Threat Intelligence

CVE-2019-11272: Insufficiently Protected Credentials and Improper Authentication in Spring Security

CVE-2019-11272 · Severity: low · CVSS 3.1 · Published 2019-06-27

Technologies: org.springframework.security:spring-security-core (Maven). Vendors: Maven.

Executive brief

Insufficiently Protected Credentials and Improper Authentication in Spring Security

Affected products

  • Maven org.springframework.security:spring-security-core
  • Maven org.springframework.security:spring-security-cas

Related threats