Apache Shiro is a Java security framework for authentication, authorization, encryption, and session management from the Apache Software Foundation. Apache Shiro before 1.7.1, when using Apache Shiro with Spring dynamic controllers, a specially crafted request may cause an authentication bypass. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021. Other reference:None