6.4.4
13 years ago
13 days ago
Known vulnerabilities in the org.springframework.security:spring-security-crypto package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
org.springframework.security:spring-security-crypto is a spring-security-crypto library for Spring Security. Affected versions of this package are vulnerable to Authentication Bypass by Primary Weakness in the Note: Patches have also been issued for older versions of Enterprise Support packages. How to fix Authentication Bypass by Primary Weakness? Upgrade | [,6.3.8)[6.4.0,6.4.4) |