CVE-2019-11269
- EPSS 6.7%
- Published 12.06.2019 15:29:00
- Last modified 21.11.2024 04:20:49
Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as well as older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code. A malicio...
CVE-2019-3778
- EPSS 20.85%
- Published 07.03.2019 18:29:00
- Last modified 21.11.2024 04:42:31
Spring Security OAuth, versions 2.3 prior to 2.3.5, and 2.2 prior to 2.2.4, and 2.1 prior to 2.1.4, and 2.0 prior to 2.0.17, and older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code. A malic...
CVE-2018-15758
- EPSS 0.38%
- Published 18.10.2018 22:29:00
- Last modified 21.11.2024 03:51:24
Spring Security OAuth, versions 2.3 prior to 2.3.4, and 2.2 prior to 2.2.3, and 2.1 prior to 2.1.3, and 2.0 prior to 2.0.16, and older unsupported versions could be susceptible to a privilege escalation under certain conditions. A malicious user or a...
CVE-2018-1260
- EPSS 62.64%
- Published 11.05.2018 20:29:00
- Last modified 21.11.2024 03:59:29
Spring Security OAuth, versions 2.3 prior to 2.3.3, 2.2 prior to 2.2.2, 2.1 prior to 2.1.2, 2.0 prior to 2.0.15 and older unsupported versions contains a remote code execution vulnerability. A malicious user or attacker can craft an authorization req...