Description
org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before 1.8.0-beta2 allows remote attackers to bypass intended access restrictions via crafted data.
Remediation
References
Related Vulnerabilities
WordPress 4.1.x Cross-Site Request Forgery (4.1 - 4.1.25)
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-7890)
WordPress Plugin Ultimate FAQ Cross-Site Scripting (1.8.29)
LimeSurvey Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2021-44967)