Spring WebFlux - CVE-2023-34034 - Write-Up and Proof-of-Concept
Spring Security’s newly released versions contain a fix for a broken access control vulnerability – CVE-2023-34034 – which was given a critical NVD severity (CVSS 9.8) and a high severity by Spring’s maintainers.