pkg:npm/jsonwebtoken
共 4 筆 CVEHIGH1MEDIUM2
✅ 檢查你的版本
所有已知漏洞
- from 0, < 9.0.0
- MEDIUM6.4CVE-2022-23540jsonwebtoken vulnerable to signature validation bypass due to insecure default algorithm in jwt.verify()from 0, < 9.0.0
- MEDIUM5.0CVE-2022-23541jsonwebtoken's insecure implementation of key retrieval function could lead to Forgeable Public/Private Tokens from RSA to HMACfrom 0, < 9.0.0
- from 0, < 4.2.2