
CVE-2022-22978 Démo de contournement Spring-Security
Dans Spring Security, lors de l'utilisation de RegexRequestMatcher avec une expression régulière contenant un point, un attaquant peut contourner l'authentification en construisant un paquet malveillant.
Spring Security 5.5.x < 5.5.7
Spring Security 5.6.x < 5.6.4

docker pull s0cke3t/cve-2022-22978:latest