Pivotal
Pivotal Spring Security Oauth: vulnerabilidades y CVE
Pivotal Spring Security Oauth tiene 2 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE2
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-22969 | Media (6.5) | 1.3% | — | 21 abr 2022 | <Issue Description> Spring Security OAuth versions 2.5.x prior to 2.5.2 and older unsupported versions are susceptible to a Denial-of-Service (DoS) attack via the initiation of the Authorization Request in an OAuth 2.0… |
| CVE-2016-4977 | Alta (8.8) | 79% | — | 25 may 2017 | When processing authorization requests using the whitelabel views in Spring Security OAuth 2.0.0 to 2.0.9 and 1.0.0 to 1.0.5, the response_type parameter value was executed as Spring SpEL which enabled a malicious user… |
Otros productos de Pivotal
Vmware Harbor Registry · 4Cloud Foundry Deployment · 2Cloud Foundry Notifications · 2Cloud Foundry Elastic Runtime · 2Cloud Foundry Routing Release · 2Cloud Foundry Command Line Interface Release · 1Cloud Foundry Command Line Interface · 1Bosh Stemcell · 1Cloud Foundry Deployment Concourse Tasks · 1Cloud Foundry Autoscaling Release · 1Cloud Foundry Event Alerts · 1Cloud Foundry Container Runtime · 1