CVE-2019-11269P3MEDIUMCVSS 5.4PoC≥ 2.2, < v2.2.5.RELEASE·≥ 2.1, < v2.1.5.RELEASE+2 more2019-06-12
CVE-2019-11269 [MEDIUM] CWE-601 CVE-2019-11269: Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 p
Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as well as older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code. A malicious user or attacker can craft a request to the authorization endpoint using the authorization code gr
nvd