CVE-2024-38827
Spring Security Authorization Bypass for Case Sensitive Comparisons
The usage of String.toLowerCase() and String.toUpperCase() has some Locale dependent exceptions that could potentially result in authorization rules not working properly.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Produtos afetados
Spring by VMware Tanzu · Spring SecurityQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →