Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30025
HistoryApr 19, 2021 - 5:25 a.m.

Insecure JWT Verification

2021-04-1905:25:29
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
jwt
verification
portofino-dispatcher
json web token
signature
attacker
forge
software

EPSS

0.001

Percentile

48.9%

portofino-dispatcher performs insecure JWT token verification. The lack of proper JSON Web Token signature verification allows an attacker to successfully forge a JWT which would otherwise pass verification.

EPSS

0.001

Percentile

48.9%

Related for VERACODE:30025