CVE-2019-17195
Connect2id Nimbus JOSE+JWT before v7.9 can throw various uncaught exceptions while parsing a JWT, which could result in
Connect2id Nimbus JOSE+JWT before v7.9 can throw various uncaught exceptions while parsing a JWT, which could result in an application crash (potential information disclosure) or a potential authentication bypass.
CRITICAL · CVSS 9.8
EPSS 0.0427
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0