Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9mrv-8pvf-hf4m

Опубликовано: 12 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

The JwtAccessTokenValidator class in Apache CXF fails to validate the 'aud' (Audience) claims of incoming JWT access tokens. This allows a JWT issued for one Resource Server to be successfully replayed against a completely different Resource Server, leading to Token Confusion/Routing attacks. Users are recommended to upgrade to versions 4.2.2 or 4.1.7, which fixes this issue.

The JwtAccessTokenValidator class in Apache CXF fails to validate the 'aud' (Audience) claims of incoming JWT access tokens. This allows a JWT issued for one Resource Server to be successfully replayed against a completely different Resource Server, leading to Token Confusion/Routing attacks. Users are recommended to upgrade to versions 4.2.2 or 4.1.7, which fixes this issue.

EPSS

Процентиль: 37%
0.00445
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-289
CWE-303

Связанные уязвимости

CVSS3: 8.1
redhat
около 2 месяцев назад

The JwtAccessTokenValidator class in Apache CXF fails to validate the 'aud' (Audience) claims of incoming JWT access tokens. This allows a JWT issued for one Resource Server to be successfully replayed against a completely different Resource Server, leading to Token Confusion/Routing attacks. Users are recommended to upgrade to versions 4.2.2 or 4.1.7, which fixes this issue.

CVSS3: 9.1
nvd
около 2 месяцев назад

The JwtAccessTokenValidator class in Apache CXF fails to validate the 'aud' (Audience) claims of incoming JWT access tokens. This allows a JWT issued for one Resource Server to be successfully replayed against a completely different Resource Server, leading to Token Confusion/Routing attacks. Users are recommended to upgrade to versions 4.2.2 or 4.1.7, which fixes this issue.

EPSS

Процентиль: 37%
0.00445
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-289
CWE-303