Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
Maven/org.springframework.security:spring-security-config — 5 CVEs · VulnScope
pkg:Maven/
org.springframework.security:spring-security-config
5 total CVEs
CRITICAL
1
HIGH
3
MEDIUM
1
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.1
CVE-2023-34034
Access Control Bypass in Spring Security
>= 5.6.0, < 5.6.12
HIGH
7.5
CVE-2026-22754
Spring Security Doesn't Correctly Include Servlet Path in Path Matching of XML Authorization Rules
>= 7.0.0, < 7.0.5
HIGH
7.5
CVE-2026-22753
Spring Security Doesn't Correctly Include Servlet Path in Path Matching of HttpSecurity#securityMatchers
>= 7.0.0, < 7.0.5
HIGH
7.3
Spring Security's authorization rules can be misconfigured when using multiple servlets
>= 5.8.0, < 5.8.5
MEDIUM
5.5
Spring Security's spring-security.xsd file is world writable
>= 6.1.1, < 6.1.4
CVE-2023-34035
CVE-2023-34042