All 3 CVE vulnerabilities found in PAC4J, with AI-generated Chinese analysis, references, and POCs.
Vendor: pac4j
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-40459 | LDAP Injection in PAC4J CWE-90 | 8.1AI | HighAI | 2026-04-17 |
| CVE-2026-40458 | Cross-Site Request Forgery in PAC4J CWE-352 | 6.5AI | MediumAI | 2026-04-17 |
| CVE-2023-25581 | Deserialization of untrusted data in InternalAttributeHandler in pac4j CWE-502 | 9.8AI | CriticalAI | 2024-10-10 |
All 3 known CVE vulnerabilities affecting PAC4J with full Chinese analysis, references, and POCs where available.