jasypt-spring-boot Insecure Default Config: Deterministic Key Derivation and Weak PBKDF2 Iterations
Security AdvisoryHighjasypt-spring-boot
Affected:
- com.github.ulisesbocchio:jasypt-spring-boot <= 4.0.5-SNAPSHOT
- com.github.ulisesbocchio:jasypt-spring-boot-starter <= 4.0.5-SNAPSHOT
Referenced CVEs: CVE-2026-9370 · 3.7
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.