📦 Casdoor

by Casbin

🔍 What is Casdoor?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-41657

HIGH CVSS 8.1 Aug 20, 2024

A logic vulnerability in Casdoor's CORS filter allows any website to make cross-domain requests to Casdoor as the logged-in user. This occurs because the Origin header validation only checks for a pre...

CVE-2024-41264

HIGH CVSS 7.5 Aug 1, 2024

This vulnerability in Casdoor v1.636.0 allows attackers to bypass SSH host key verification, potentially enabling man-in-the-middle attacks and credential theft. Any system using the vulnerable SSH cl...