Spring Cloud SSO Connector, version 2.1.2, contains a regression which disables issuer validation in resource servers that are not bound to the SSO service. In PCF deployments with multiple SSO service plans, a remote attacker can authenticate to unbound resource servers which use this version of the SSO Connector with tokens generated from another service plan.
Related Vulnerabilities
CVE-2018-8718 Vulnerability in maven package org.jenkins-ci.plugins:mailer
CVE-2020-16037 Vulnerability in maven package org.webjars.npm:electron
CVE-2023-41049 Vulnerability in npm package @dcl/single-sign-on-client
CVE-2016-6651 Vulnerability in maven package org.cloudfoundry.identity:cloudfoundry-identity-common
CVE-2017-4991 Vulnerability in maven package org.cloudfoundry.identity:cloudfoundry-identity-uaa