org.wildfly:wildfly-security@12.0.0.Beta1 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the org.wildfly:wildfly-security package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • M
Privilege Context Switching

org.wildfly:wildfly-security is a WildFly Application Server

Affected versions of this package are vulnerable to Privilege Context Switching. The EJBContext principle is not popped back after invoking another EJB using a different Security Domain.

How to fix Privilege Context Switching?

Upgrade org.wildfly:wildfly-security to version 20.0.0.Beta1 or higher.

[,20.0.0.Beta1)