Apache ShenYu suffers from an unauthorized access vulnerability where a user can access /plugin api without authentication. This issue affected Apache ShenYu 2.4.0 and 2.4.1.
View the template here CVE-2022-23944.yaml
References:
https://github.com/cckuailong/reapoc/blob/main/2022/CVE-2022-23944/vultarget/README.md