GHSA-48CG-9C55-J2Q7 hippo4j Includes Hard Coded Secret Key in JWT Creation

hippo4j 1.0.0 to 1.5.0, uses a hard-coded secret key in its JWT (JSON Web Token) creation. This allows attackers with access to the source code or compiled binary to forge valid access tokens and impe ...

Continue Reading
Linux Distros Unpatched Vulnerability : CVE-2025-54955

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. OpenNebula Community Edition (CE) before 7.0.0 and Enterprise Ed ...

Continue Reading
hippo4j Includes Hard Coded Secret Key in JWT Creation

hippo4j 1.0.0 to 1.5.0, uses a hard-coded secret key in its JWT (JSON Web Token) creation. This allows attackers with access to the source code or compiled binary to forge valid access tokens and impe ...

Continue Reading
EUVD-2025-25521

hippo4j 1.0.0 to 1.5.0, uses a hard-coded secret key in its JWT (JSON Web Token) creation. This allows attackers with access to the source code or compiled binary to forge valid access tokens and impe ...

Continue Reading
CVE-2025-51606

hippo4j 1.0.0 to 1.5.0, uses a hard-coded secret key in its JWT (JSON Web Token) creation. This allows attackers with access to the source code or compiled binary to forge valid access tokens and impe ...

Continue Reading
PT-2025-34299 · Hippo4J · Hippo4J

Name of the Vulnerable Software and Affected Versions: hippo4j versions 1.0.0 through 1.5.0 Description: hippo4j uses a hard-coded secret key in its JWT (JSON Web Token) creation. This allows attacker ...

Continue Reading
ROS-20250822-07

Vulnerability of parse.ParseUnverified() function of golang-jwt web token library of Go programming language is related to uncontrolled resource consumption. Go programming language is related to unco ...

Continue Reading
Linux Distros Unpatched Vulnerability : CVE-2025-45765

The Linux/Unix host has one or more packages installed that are impacted by a vulnerability without a vendor supplied patch available. ruby-jwt v3.0.0.beta1 was discovered to contain weak encryption. ...

Continue Reading

Back to Main

Subscribe for the latest news: