Back to bug 2162206

Who When What Removed Added
Avinash Hanwate 2023-01-19 05:18:51 UTC CC aileenc, alampare, alazarot, anstephe, asoldano, ataylor, avibelli, balejosg, bbaranow, bgeorges, bmaxwell, boliveir, brian.stansberry, cdewolf, chazlett, clement.escoffier, dandread, darran.lofthouse, dhanak, dkreling, dosoudil, emingora, fjuma, fmongiar, gjospin, gmalinko, gsmet, hamadhan, ibek, ivassile, iweiss, janstey, jnethert, jpavlik, jpoth, jrokos, jross, jwon, kverlaen, lbacciot, lgao, lthon, max.andersen, mizdebsk, mnovotny, mokumar, mosmerov, msochure, msvehla, nwallace, pdelbell, pdrozd, peholase, pgallagh, pjindal, pmackay, probinso, pskopek, rguimara, rrajasek, rruss, rstancel, rsvoboda, sbiarozk, sdouglas, smaestri, sthorger, tcunning, tom.jenkinson, yfang
Avinash Hanwate 2023-01-19 06:04:35 UTC Blocks 2162216
Sandipan Roy 2023-01-19 06:48:56 UTC Depends On 2162233, 2162232
Avinash Hanwate 2023-01-20 04:56:25 UTC CC dfreiber, jburrell, rogbas, vkumar
Avinash Hanwate 2023-01-20 05:09:32 UTC Comment 3 updated
Avinash Hanwate 2023-02-03 04:18:25 UTC Depends On 2166820
Avinash Hanwate 2023-03-16 04:11:51 UTC Doc Text A flaw was found in the spring-security framework. Spring Security could allow a remote attacker to bypass security restrictions, caused by a flaw when using forward or include dispatcher types. By sending a specially-crafted request, an attacker could exploit this vulnerability to bypass authorization rules.
Avinash Hanwate 2023-03-16 04:13:12 UTC Depends On 2178890, 2178889
RaTasha Tillery-Smith 2023-03-16 14:57:09 UTC Doc Text A flaw was found in the spring-security framework. Spring Security could allow a remote attacker to bypass security restrictions, caused by a flaw when using forward or include dispatcher types. By sending a specially-crafted request, an attacker could exploit this vulnerability to bypass authorization rules. A flaw was found in the spring-security framework. Spring Security could allow a remote attacker to bypass security restrictions caused by an issue when using forward or include dispatcher types. By sending a specially-crafted request, an attacker can bypass authorization rules.
errata-xmlrpc 2023-04-12 11:58:57 UTC Link ID Red Hat Product Errata RHSA-2023:1655
Product Security DevOps Team 2023-04-12 17:36:18 UTC Resolution --- ERRATA
Status NEW CLOSED
Last Closed 2023-04-12 17:36:18 UTC
errata-xmlrpc 2023-06-29 20:08:18 UTC Link ID Red Hat Product Errata RHSA-2023:3954

Back to bug 2162206