Site icon 지락문화예술공작단

USN-5526-1: PyJWT vulnerability

USN-5526-1: PyJWT vulnerability

Aapo Oksman discovered that PyJWT incorrectly handled signatures
constructed from SSH public keys. A remote attacker could use this to forge
a JWT signature.
Source: USN-5526-1: PyJWT vulnerability

Exit mobile version