CVE-2023-31582
jose4j before v0.9.3 allows attackers to set a low iteration count of 1000 or less.
jose4j before v0.9.3 allows attackers to set a low iteration count of 1000 or less.
HIGH · CVSS 7.5
EPSS 0.00167
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0