CVE-2021-37580: Improper Authentication in Apache ShenYu Admin

Severity: Critical

CVSS Score: 9.8

A flaw was found in Apache ShenYu Admin. The incorrect use of JWT in ShenyuAdminBootstrap allows an attacker to bypass authentication. This issue affected Apache ShenYu 2.3.0 and 2.4.0