Vulnerability in Spring Spring Security. If an application uses <sec:intercept-url servlet-path="/servlet-path" pattern="/endpoint/**"/> to define the servlet path for computing a path matcher, then the servlet path is not included and the related authorization rules are not exercised. This can lead to an authorization bypass.This issue affects Spring Security: from 7.0.0 through 7.0.4.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NVMware Spring Security
APPVmware7.0.0 – 7.0.5 (excl.)
Related vulnerabilities
Spring Security's embedded UnboundID LDAP server (UnboundIdContainer) unconditionally registers an administrat...
In versions of Spring Security's OAuth2 Authorization Server module 7.0.0 through 7.0.4, when Dynamic Client R...
VMware Spring Security — brak zapisu nagłówków HTTP odpowiedzi
Spring Security WebFlux: ominięcie zabezpieczeń przez wzorzec "**"
Spring Security: pominięcie reguł autoryzacji przez forward/include dispatcher