Tag
cve-2016-4437
Safeguard articles tagged "cve-2016-4437" — guides, analysis, and best practices for software supply chain and application security.
2 articles
Vulnerability Analysis
CVE-2016-4437: Apache Shiro Code Execution Vulnerability
CVE-2016-4437 affects Apache Shiro and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
Sep 17, 20263 min read
Vulnerability Analysis
Apache Shiro remember-me cookie deserialization RCE (CVE-2016-4437)
Apache Shiro's default rememberMe cipher key enables unauthenticated Java deserialization RCE. Here's how CVE-2016-4437 works and how to fix it.
Aug 7, 20268 min read
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.