Skip to main content

Vendor/product archive

pivotal_software / spring_security CVEs

Beta · best-effort

4 CVEs tagged to pivotal_software / spring_security0 Critical, 3 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2021-22112

Published Feb 23, 2021

Spring Security 5.4.x prior to 5.4.4, 5.3.x prior to 5.3.8.RELEASE, 5.2.x prior to 5.2.9.RELEASE, and older unsupported versions can fail to save the SecurityContext if it is chan…

CVSS 8.8 · High

CVE-2020-5407

Published May 13, 2020

Spring Security versions 5.2.x prior to 5.2.4 and 5.3.x prior to 5.3.2 contain a signature wrapping vulnerability during SAML response validation. When using the spring-security-s…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1