 
      org.springframework.security:spring-security-core
Spring Security
Security Advisories for org.springframework.security:spring-security-core in maven
      
        High
      
    
      
  
          about 1 month ago
    
    Spring Security annotation detection mechanism has authorization bypass
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          7 months ago
    
    Spring Security Vulnerable to Authorization Bypass via Security Annotations
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          11 months ago
    
    Spring Framework has Authorization Bypass for Case Sensitive Comparisons
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          about 1 year ago
    
    Spring Security Missing Authorization vulnerability
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          over 1 year ago
    
    Erroneous authentication pass in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          over 1 year ago
    
    Broken Access Control in Spring Security With Direct Use of isFullyAuthenticated
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          over 2 years ago
    
    Spring Security logout not clearing security context
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Critical
      
    
      
  
          almost 3 years ago
    
    Spring Security authorization rules can be bypassed via forward or include dispatcher types
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Critical
      
    
      
  
          over 3 years ago
    
    Authorization bypass in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          over 3 years ago
    
    Integer overflow in BCrypt class in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          over 3 years ago
    
    Improper Control of Generation of Code in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          over 3 years ago
    
    Exposure of Sensitive Information to an Unauthorized Actor in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          over 3 years ago
    
    Concurrent Execution using Shared Resource with Improper Synchronization in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          over 3 years ago
    
    Spring Framework and Spring Security vulnerable to Deserialization of Untrusted Data
        
        maven
        
        org.springframework.security:spring-security-core, org.springframework:spring-core
      
    
      
        High
      
    
      
  
          over 3 years ago
    
    Deserialization of Untrusted Data in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          over 3 years ago
    
    Improper Authentication in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          over 4 years ago
    
    Resource Exhaustion in Spring Security
        
        maven
        
        org.springframework.security:spring-security-oauth2-client, org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          about 5 years ago
    
    Security Constraint Bypass in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Critical
      
    
      
  
          about 5 years ago
    
    Authorization Bypass in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          over 5 years ago
    
    Insufficient Entropy in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          over 5 years ago
    
    Signature wrapping vulnerability in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          over 6 years ago
    
    Insufficiently Protected Credentials and Improper Authentication in Spring Security
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        Moderate
      
    
      
  
          over 6 years ago
    
    Spring Security uses insufficiently random values
        
        maven
        
        org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          almost 7 years ago
    
    Spring Security vulnerable to Authorization Bypass
        
        maven
        
        org.springframework.security:spring-security-oauth2-jose, org.springframework.security:spring-security-core
      
    
      
        High
      
    
      
  
          about 7 years ago
    
    Spring Security and Spring Framework may not recognize certain paths that should be protected
        
        maven
        
        org.springframework.security:spring-security-core, org.springframework:spring-core
      
    
      
        Moderate
      
    
      
  
          about 7 years ago
    
    Improper Input Validation in org.springframework.security:spring-security-core, org.springframework.security:spring-security-core , and org.springframework:spring-core
        
        maven
        
        org.springframework.security:spring-security-core, org.springframework:spring-core