diff --git a/advisories/github-reviewed/2021/11/GHSA-vpfp-5gwq-g533/GHSA-vpfp-5gwq-g533.json b/advisories/github-reviewed/2021/11/GHSA-vpfp-5gwq-g533/GHSA-vpfp-5gwq-g533.json index c4bb59caa51..a45c4276053 100644 --- a/advisories/github-reviewed/2021/11/GHSA-vpfp-5gwq-g533/GHSA-vpfp-5gwq-g533.json +++ b/advisories/github-reviewed/2021/11/GHSA-vpfp-5gwq-g533/GHSA-vpfp-5gwq-g533.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-vpfp-5gwq-g533", - "modified": "2021-11-17T22:31:03Z", + "modified": "2023-09-05T22:18:19Z", "published": "2021-11-17T23:15:30Z", "aliases": [ "CVE-2021-37580" ], "summary": "Improper Authentication in Apache ShenYu Admin", - "details": "A flaw was found in Apache ShenYu Admin. The incorrect use of JWT in ShenyuAdminBootstrap allows an attacker to bypass authentication. This issue affected Apache ShenYu 2.3.0 and 2.4.0", + "details": "A flaw was found in Apache ShenYu Admin. The incorrect use of JWT in ShenyuAdminBootstrap allows an attacker to bypass authentication. This issue affected Apache ShenYu 2.3.0 and 2.4.0.", "severity": [ { "type": "CVSS_V3", @@ -20,6 +20,11 @@ "ecosystem": "Maven", "name": "org.apache.shenyu:shenyu-admin" }, + "ecosystem_specific": { + "affected_functions": [ + "" + ] + }, "ranges": [ { "type": "ECOSYSTEM", @@ -42,15 +47,15 @@ }, { "type": "WEB", - "url": "https://github.com/apache/incubator-shenyu/commit/5154e6f487c4d51dc8e022f2e2bf360841cabda4" + "url": "https://github.com/apache/shenyu/commit/f78adb26926ba53b4ec5c21f2cf7e931461d601d" }, { "type": "PACKAGE", - "url": "https://github.com/apache/incubator-shenyu" + "url": "https://github.com/apache/shenyu" }, { "type": "WEB", - "url": "https://github.com/apache/incubator-shenyu/releases/tag/v2.4.1" + "url": "https://github.com/apache/shenyu/releases/tag/v2.4.1" }, { "type": "WEB",