PyJWT vulnerability

Aapo Oksman discovered that PyJWT incorrectly handled signatures constructed from SSH public keys. A remote attacker could use this to forge a JWT signature.Read More ...

Continue Reading
This Week in Spring – July 19th, 2022

Hi, Spring fans! Welcome to another installment of _This Week in Spring_! This week I'm trying to wind down some threads and take some vacation with my family. It's going to be an amazing time, indeed ...

Continue Reading
CVE-2022-29060

This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...

Continue Reading
GO-2022-0380

The AccountClaims.IsRevoked and Export.IsRevoked functions improperly validate expired credentials using the current system time rather than the issue time of the JWT to be tested. These functions can ...

Continue Reading
[SECURITY] Fedora 35 Update: golang-github-jwt-3.2.2-3.fc35

A go implementation of JSON Web Tokens. Supports the parsing and verification, as well as the generation and signing of JWTs.Read More ...

Continue Reading
[SECURITY] Fedora 35 Update: golang-github-dgrijalva-jwt-3.2.0-11.fc35

Golang implementation of json web tokens (jwt).Read More ...

Continue Reading
SUSE SLES15 Security Update : python-PyJWT (SUSE-SU-2022:2403-1)

The remote SUSE Linux SLES15 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2022:2403-1 advisory. - PyJWT is a Python implementation of RFC 7519. PyJW ...

Continue Reading
SUSE SLES12 Security Update : python-PyJWT (SUSE-SU-2022:2401-1)

The remote SUSE Linux SLES12 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2022:2401-1 advisory. - PyJWT is a Python implementation of RFC 7519. PyJW ...

Continue Reading

Back to Main

Subscribe for the latest news: