Total vulnerabilities in the database
Apache Shiro before 1.9.1, A RegexRequestMatcher can be misconfigured to be bypassed on some servlet containers. Applications using RegExPatternMatcher with .
in the regular expression are possibly vulnerable to an authorization bypass.
Software | From | Fixed in |
---|---|---|
apache / shiro | - | 1.9.1 |
![]() |
- | 1.9.1 |