CRITICAL9.8CVE-2016-4437⚠ KEVImproper Access Control in Apache Shiro from 0, < 1.2.5
CRITICAL9.8CVE-2022-40664Apache Shiro Authentication Bypass vulnerability from 0, < 1.10.0
CRITICAL9.8Improper Authorization in Apache Shiro
from 0, < 1.9.1
CRITICAL9.8Apache Shiro vulnerable to a specially crafted HTTP request causing an authentication bypass
from 0, < 1.8.0
CRITICAL9.8shiro - security update
from 0, < 1.5.2
CRITICAL9.8shiro - security update
from 0, < 1.5.3
CRITICAL9.1Apache Shiro: LDAP DN Injection in DefaultLdapRealm
from 0, < 2.2.1
HIGH7.5shiro - security update
from 0, < 1.6.0
HIGH7.5Improper input validation in Apache Shiro
from 0, < 1.4.2
MEDIUM6.5Apache Shiro has a session fixation vulnerability
>= 1.0.0-incubating, < 2.2.0
MEDIUM6.5Apache Shiro vulnerable to path traversal
from 0, < 1.13.0
LOW2.5Apache Shiro Affected by an Observable Timing Discrepancy Vulnerability
from 0, < 2.1.0