VYPR
Critical severityNVD Advisory· Published Feb 3, 2021· Updated Aug 4, 2024

CVE-2020-17523

CVE-2020-17523

Description

Apache Shiro before 1.7.1, when using Apache Shiro with Spring, a specially crafted HTTP request may cause an authentication bypass.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.apache.shiro:shiro-webMaven
< 1.7.11.7.1
org.apache.shiro:shiro-springMaven
< 1.7.11.7.1
org.apache.shiro:shiro-spring-boot-starterMaven
< 1.7.11.7.1

Affected products

9

Patches

Vulnerability mechanics

References

20

News mentions

0

No linked articles in our index yet.