Affecting org.apache.shiro:shiro-web artifact, versions [,1.5.3)Report new vulnerabilities
org.apache.shiro:shiro-web is a powerful and easy-to-use Java security framework that performs authentication, authorization, cryptography, and session management.
Affected versions of this package are vulnerable to Authentication Bypass. When using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an authentication bypass.
org.apache.shiro:shiro-web to version 1.5.3 or higher.