org.apereo.cas:cas-server-support-oidc@5.0.9 vulnerabilities
-
latest version
7.0.3
-
latest non vulnerable version
-
first published
8 years ago
-
latest version published
a month ago
-
licenses detected
- [5.0.0.M1,)
-
package manager
Direct Vulnerabilities
Known vulnerabilities in the org.apereo.cas:cas-server-support-oidc package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
org.apereo.cas:cas-server-support-oidc is a package that allows allows CAS to act as an OpenId Connect Provider (OP). Affected versions of this package are vulnerable to Insecure Randomness. A insecure source of randomness is used to generate all of its random values as it relies upon apache commons lang3 How to fix Insecure Randomness? Upgrade |
[,6.1.0-RC5)
|