An issue in Dromara SaToken version 1.3.50RC and before when using Spring dynamic controllers, a specially crafted request may cause an authentication bypass.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2827 | An issue in Dromara SaToken version 1.3.50RC and before when using Spring dynamic controllers, a specially crafted request may cause an authentication bypass. |
Github GHSA |
GHSA-w9vh-hv5g-7wmr | SaToken authentication bypass vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/dromara/Sa-Token/issues/511 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-11T19:34:53.071Z
Reserved: 2023-09-25T00:00:00
Link: CVE-2023-43961
Updated: 2024-08-02T19:52:11.892Z
Status : Modified
Published: 2023-10-25T18:17:32.357
Modified: 2024-11-21T08:25:01.343
Link: CVE-2023-43961
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA