Information on source package shiro

Available versions

ReleaseVersion
jessie1.2.3-1
stretch1.3.2-1
buster1.3.2-4
bullseye1.3.2-4
sid1.3.2-4

Open issues

BugjessiestretchbusterbullseyesidDescription
CVE-2019-12422vulnerablevulnerablevulnerablevulnerablevulnerableApache Shiro before 1.4.2, when using the default "remember me" config ...
CVE-2016-6802vulnerable (no DSA)fixedfixedfixedfixedApache Shiro before 1.3.2 allows attackers to bypass intended servlet ...
CVE-2016-4437vulnerable (no DSA)fixedfixedfixedfixedApache Shiro before 1.2.5, when a cipher key has not been configured f ...

Resolved issues

BugDescription
CVE-2014-0074Apache Shiro 1.x before 1.2.3, when using an LDAP server with unauthen ...
CVE-2010-3863Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize ...

Search for package or bug name: Reporting problems