CVE-2026-43827 | Apache Shiro up to 2.1.0/3.0.0-alpha-1 session fixiation

SecurityVulns

A vulnerability labeled as critical has been found in Apache Shiro up to 2.1.0/3.0.0-alpha-1. Affected by this issue is some unknown functionality. Such manipulation leads to session fixiation.

This vulnerability is traded as CVE-2026-43827. The attack may be launched remotely. There is no exploit available.

The affected component should be upgraded.VulDB Recent EntriesRead More