Search CVE reports
21 – 21 of 21 results
Some fixes available 1 of 5
Apache Shiro before 1.2.5, when a cipher key has not been configured for the "remember me" feature, allows remote attackers to execute arbitrary code or bypass intended access restrictions via an unspecified request parameter.
1 affected package
shiro
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| shiro | — | Not affected | Not affected | Not affected | Not affected |