Using "**" as a pattern in Spring... CVE-2023-34034

- AV AC AU C I A
发布: 2023-07-19
修订: 2023-08-14

Using "**" as a pattern in Spring Security configuration for WebFlux creates a mismatch in pattern matching between Spring Security and Spring WebFlux, and the potential for a security bypass.

0%
暂无可用Exp或PoC
当前有5条受影响产品信息