Black Duck Coverity Connect是美国Black Duck公司的一个代码缺陷静态分析平台。 Black Duck Coverity Connect 2023.6.0版本至2026.3.0版本存在授权问题漏洞,该漏洞源于Spring Security存在认证和授权绕过问题,可能导致未经身份验证的攻击者通过发送特制的HTTP请求绕过认证和授权控制,访问某些API端点中的数据。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Black Duck | Coverity Connect | 2023.6.0< 2026.6.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Black Duck | Coverity Connect | 2023.6.0 ~ 2026.6.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet