org.springframework.security:spring-security-core
Spring Security
Moderate Security Advisories for org.springframework.security:spring-security-core in maven Clear Filters
Moderate
4 months ago
Spring Security Core has a TOCTOU race condition when One-Time Token login with JdbcOneTimeTokenService is configured
maven
org.springframework.security:spring-security-core
Moderate
7 months ago
Spring Security has a broken timing attack mitigation implemented in DaoAuthenticationProvide
maven
org.springframework.security:spring-security-core
Moderate
over 1 year ago
Spring Security Vulnerable to Authorization Bypass via Security Annotations
maven
org.springframework.security:spring-security-core
Moderate
over 1 year ago
Spring Framework has Authorization Bypass for Case Sensitive Comparisons
maven
org.springframework.security:spring-security-core
Moderate
almost 2 years ago
Spring Security Missing Authorization vulnerability
maven
org.springframework.security:spring-security-core
Potential
Moderate
over 2 years ago
Spring Security's spring-security.xsd file is world writable
maven
org.springframework.security:spring-security-config
Moderate
over 3 years ago
Spring Security logout not clearing security context
maven
org.springframework.security:spring-security-core
Moderate
about 4 years ago
Integer overflow in BCrypt class in Spring Security
maven
org.springframework.security:spring-security-core
Moderate
about 4 years ago
Improper Control of Generation of Code in Spring Security
maven
org.springframework.security:spring-security-core
Moderate
about 4 years ago
Exposure of Sensitive Information to an Unauthorized Actor in Spring Security
maven
org.springframework.security:spring-security-core
Moderate
about 4 years ago
Concurrent Execution using Shared Resource with Improper Synchronization in Spring Security
maven
org.springframework.security:spring-security-core
Moderate
over 4 years ago
Spring Framework and Spring Security vulnerable to Deserialization of Untrusted Data
maven
org.springframework.security:spring-security-core, org.springframework:spring-core
Moderate
over 4 years ago
Authentication Bypass Using an Alternate Path or Channel in SpringSource Spring Security and Acegi Security
maven
org.springframework.security:spring-security-core
Moderate
about 6 years ago
Insufficient Entropy in Spring Security
maven
org.springframework.security:spring-security-core
Moderate
over 7 years ago
Spring Security uses insufficiently random values
maven
org.springframework.security:spring-security-core
Moderate
almost 8 years ago
Improper Input Validation in org.springframework.security:spring-security-core, org.springframework.security:spring-security-core , and org.springframework:spring-core
maven
org.springframework.security:spring-security-core, org.springframework:spring-core