Lucene search

K
osvGoogleOSV:CVE-2021-29451
HistoryApr 16, 2021 - 10:15 p.m.

CVE-2021-29451

2021-04-1622:15:14
Google
osv.dev
4
portofino
web development
jwtforgery

AI Score

9.2

Confidence

High

EPSS

0.001

Percentile

48.9%

Portofino is an open source web development framework. Portofino before version 5.2.1 did not properly verify the signature of JSON Web Tokens. This allows forging a valid JWT. The issue will be patched in the upcoming 5.2.1 release.

AI Score

9.2

Confidence

High

EPSS

0.001

Percentile

48.9%

Related for OSV:CVE-2021-29451