All vulnerabilities

GHSA-C7JM-38GQ-H67H

maven · org.http4k:http4k-security-digest

Summary

http4k: `ServerFilters.DigestAuth` / `DigestAuthProvider` defaulted to an always-true nonce verifier, disabling replay protection in default deployments

References