DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2024-38827

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-38827

CGA ID

CGA-rwg8-jxvr-5wxf

Severity

4.8

Medium

CVSS V3

Summary

Spring Framework has Authorization Bypass for Case Sensitive Comparisons

Description

The usage of String.toLowerCase() and String.toUpperCase() has some Locale dependent exceptions that could potentially result in authorization rules not working properly.

References

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images