GHSA-9pxm-8g95-q5xr
MODERATECVE-2017-10862jwt-scala 1.2.2 and earlier fails to verify token signatures correctly which may lead to an attacker being able to pass specially crafted JWT data as a correctly signed token.
- Affected
- <= 1.2.2
- Fixed in
- not stated
- Weakness
- CWE-345
- Published
- 2022-05-17
- Source
- github