Back to Vulnerability Directory
CRITICALFixed upstream

CVE-2023-44794

issue in Dromara SaToken version 1.36.0 and before allows a remote attacker to escalate…

Technology

Spring Framework

CVSS Score

9.8 / 10.0

Affected Versions

See upstream advisory

Upstream Fix

See upstream advisory

Published

October 25, 2023

OSSeva Coverage

Fixed upstream

Description

An issue in Dromara SaToken version 1.36.0 and before allows a remote attacker to escalate privileges via a crafted payload to the URL.

Is your Spring Framework deployment affected?

If you're running See upstream advisory, you need this patch. Book a discovery call to get covered.