Vulnerability CVE-2023-40788


Published: 2023-09-19

Description:
SpringBlade <=V3.6.0 is vulnerable to Incorrect Access Control due to incorrect configuration in the default gateway resulting in unauthorized access to error logs

 References:
https://github.com/chillzhuang/SpringBlade/blob/master/blade-gateway/src/main/java/org/springblade/gateway/provider/AuthProvider.java
https://gist.github.com/kaliwin/89276ec7e97f9529c989bd77706c29c7
https://github.com/chillzhuang/SpringBlade

Copyright 2026, cxsecurity.com

 

Back to Top