CVE-2023-43961
8.8HIGHAn issue in Dromara SaToken version 1.3.50RC and before when using Spring dynamic controllers, a specially crafted request may cause an authentication bypass.
Published: 10/25/2023Updated: 11/21/2024
Description
An issue in Dromara SaToken version 1.3.50RC and before when using Spring dynamic controllers, a specially crafted request may cause an authentication bypass.
AI AnalysisPowered by AI
Affected Products
dromarasa-token
References
- https://github.com/dromara/Sa-Token/issues/511ExploitIssue Tracking
- https://github.com/dromara/Sa-Token/issues/511ExploitIssue Tracking