Aapo Oksman discovered that PyJWT incorrectly handled signatures constructed from SSH public keys. A remote attacker could use this to forge a JWT signature.Read More ...
Continue ReadingJuly 20, 2022
Hi, Spring fans! Welcome to another installment of _This Week in Spring_! This week I'm trying to wind down some threads and take some vacation with my family. It's going to be an amazing time, indeed ...
Continue ReadingJuly 19, 2022
This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...
Continue ReadingJuly 19, 2022
The AccountClaims.IsRevoked and Export.IsRevoked functions improperly validate expired credentials using the current system time rather than the issue time of the JWT to be tested. These functions can ...
Continue ReadingJuly 18, 2022
A go implementation of JSON Web Tokens. Supports the parsing and verification, as well as the generation and signing of JWTs.Read More ...
Continue ReadingJuly 17, 2022
Golang implementation of json web tokens (jwt).Read More ...
Continue ReadingJuly 17, 2022
The remote SUSE Linux SLES15 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2022:2403-1 advisory. - PyJWT is a Python implementation of RFC 7519. PyJW ...
Continue ReadingJuly 15, 2022
The remote SUSE Linux SLES12 host has packages installed that are affected by a vulnerability as referenced in the SUSE- SU-2022:2401-1 advisory. - PyJWT is a Python implementation of RFC 7519. PyJW ...
Continue ReadingJuly 15, 2022
Back to Main