Casdoor · Casdoor · CVE-2025-4210
**Name of the Vulnerable Software and Affected Versions**
Casdoor versions up to 1.811.0
**Description**
A critical issue was found in the SCIM User Creation Endpoint, specifically affecting the `HandleScim` function of the `controllers/scim.go` file. This issue leads to authorization bypass and can be initiated remotely.
**Recommendations**
For versions up to 1.811.0, upgrade to version 1.812.0 to address this issue.