CVE-2018-11407 fixes an unauthorized access on a misconfigured LDAP server when using an empty password.
May 25, 2018
#Security Advisories
CVE-2018-11385 fixes a session fixation issue when using Guard authentication.
May 25, 2018
#Security Advisories
CVE-2018-11386 fixes a possible denial of service when using PDOSessionHandler.
May 25, 2018
#Security Advisories
CVE-2018-11408 fixes an open redirect vulnerability on DefaultAuthenticationSuccessHandler and DefaultAuthenticationFailureHandler.
May 25, 2018
#Security Advisories
CVE-2018-11406 fixes a possible CSRF token fixation.
May 25, 2018
#Security Advisories