VendorsNetworkntlight-oauth2all versions
Vulnerabilities

Networknt Light-oauth2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2023-31580
light-oauth2 before version 2.1.27 obtains the public key without any verification. This could allow attackers to authenticate to the application with a crafted JWT token.
Published 2023-10-24 · Modified
5.9EPSS 0.006