Skip to content

Commit

Permalink
Format markdown docs
Browse files Browse the repository at this point in the history
  • Loading branch information
DGOV-Bryce authored and github-actions[bot] committed Oct 30, 2024
1 parent 3f796fb commit 4373fda
Showing 1 changed file with 4 additions and 4 deletions.
8 changes: 4 additions & 4 deletions docs/advisories/20241030003-Spring-Webflux-Vulnerability.md
Original file line number Diff line number Diff line change
@@ -1,14 +1,14 @@
# Authorization Bypass of Static Resources in WebFlux Applications - 20241030003
# Authorization Bypass of Static Resources in WebFlux Applications - 20241030003

## Overview

Spring Security have disclosed an vulnerability that enables an “authorisation bypass of static resources in WebFlux applications” under specific conditions. If exploited, this vulnerability could potentially allow unauthorized access to static resources, undermining application security.

## What is vulnerable?

| Product(s) Affected | Version(s) | CVE | CVSS | Severity |
| ------------------- | ---------- | ----------------------------------------------------------------------------------------------------------------------------------------- | ------------- | ---------------------------------------------------------------- |
|  Spring WebFlux | 5.7.0 - 5.7.12 <br>5.8.0 - 5.8.14<br>6.0.0 - 6.0.12<br>6.1.0 - 6.1.10<br>6.2.0 - 6.2.6<br>6.3.0 - 6.3.3 | [CVE-2024-38821](https://nvd.nist.gov/vuln/detail/CVE-2024-38821) </br> | 9.1 | **Critical** |
| Product(s) Affected | Version(s) | CVE | CVSS | Severity |
| ------------------- | ------------------------------------------------------------------------------------------------------- | ----------------------------------------------------------------------- | ---- | ------------ |
| Spring WebFlux | 5.7.0 - 5.7.12 <br>5.8.0 - 5.8.14<br>6.0.0 - 6.0.12<br>6.1.0 - 6.1.10<br>6.2.0 - 6.2.6<br>6.3.0 - 6.3.3 | [CVE-2024-38821](https://nvd.nist.gov/vuln/detail/CVE-2024-38821) </br> | 9.1 | **Critical** |

## What has been observed?

Expand Down

0 comments on commit 4373fda

Please sign in to comment.