Loading
A flaw was found in the json payload. If annotation based security is used to secure a REST resource, the JSON body that the resource may consume is being processed (deserialized) prior to the security constraints being evaluated and applied. This does not happen with configuration based security.
Use CWE-755, Quarkus vendor hub and Quarkus product page to widen CVE-2023-6267 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-4116, CVE-2024-12225 and CVE-2023-4853 for nearby disclosures in the same product family.