Логотип exploitDog
bind:CVE-2025-22223
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-22223

Количество 4

Количество 4

redhat логотип

CVE-2025-22223

9 месяцев назад

Spring Security 6.4.0 - 6.4.3 may not correctly locate method security annotations on parameterized types or methods. This may cause an authorization bypass.  You are not affected if you are not using @EnableMethodSecurity, or you do not have method security annotations on parameterized types or methods, or all method security annotations are attached to target methods

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-22223

9 месяцев назад

Spring Security 6.4.0 - 6.4.3 may not correctly locate method security annotations on parameterized types or methods. This may cause an authorization bypass.  You are not affected if you are not using @EnableMethodSecurity, or you do not have method security annotations on parameterized types or methods, or all method security annotations are attached to target methods

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-22223

9 месяцев назад

Spring Security 6.4.0 - 6.4.3 may not correctly locate method security ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-hh3m-g4qj-4835

9 месяцев назад

Spring Security Vulnerable to Authorization Bypass via Security Annotations

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2025-22223

Spring Security 6.4.0 - 6.4.3 may not correctly locate method security annotations on parameterized types or methods. This may cause an authorization bypass.  You are not affected if you are not using @EnableMethodSecurity, or you do not have method security annotations on parameterized types or methods, or all method security annotations are attached to target methods

CVSS3: 5.3
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-22223

Spring Security 6.4.0 - 6.4.3 may not correctly locate method security annotations on parameterized types or methods. This may cause an authorization bypass.  You are not affected if you are not using @EnableMethodSecurity, or you do not have method security annotations on parameterized types or methods, or all method security annotations are attached to target methods

CVSS3: 5.3
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-22223

Spring Security 6.4.0 - 6.4.3 may not correctly locate method security ...

CVSS3: 5.3
0%
Низкий
9 месяцев назад
github логотип
GHSA-hh3m-g4qj-4835

Spring Security Vulnerable to Authorization Bypass via Security Annotations

CVSS3: 5.3
0%
Низкий
9 месяцев назад

Уязвимостей на страницу