GHSA-2hfh-94w5-wxvf
MEDIUMCVE-2025-7453A vulnerability was found in saltbo zpan up to 1.6.5/1.7.0-beta2. It has been rated as problematic. This issue affects the function NewToken of the file zpan/internal/app/service/token.go of the component JSON Web Token Handler. The manipulation with the input 123 leads to use of hard-coded password. The attack may be initiated remotely. The complexity of an attack is rather high. The exploitation
- Affected
- >=0, <1.6.6
- Fixed in
- 1.6.6
- Weakness
- CWE-259
- Published
- 2025-07-11
- Source
- github