Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4x5f-xw5j-gv58

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads when using EE Security with WildFly Elytron which can lead to the possibility of being handled using the identity from another request.

A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads when using EE Security with WildFly Elytron which can lead to the possibility of being handled using the identity from another request.

EPSS

Процентиль: 33%
0.00132
Низкий

Связанные уязвимости

CVSS3: 4.2
redhat
почти 6 лет назад

A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads when using EE Security with WildFly Elytron which can lead to the possibility of being handled using the identity from another request.

CVSS3: 4.2
nvd
почти 6 лет назад

A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads when using EE Security with WildFly Elytron which can lead to the possibility of being handled using the identity from another request.

CVSS3: 4.2
debian
почти 6 лет назад

A flaw was found in Soteria before 1.0.1, in a way that multiple reque ...

EPSS

Процентиль: 33%
0.00132
Низкий