Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-45770

Опубликовано: 31 июл. 2025
Источник: nvd
CVSS3: 7
EPSS Низкий

Описание

jwt v5.4.3 was discovered to contain weak encryption. NOTE: this issue has been disputed on the basis that key lengths are expected to be set by an application, not by this library. This dispute is subject to review under CNA rules 4.1.4, 4.1.14, and other rules; the dispute tagging is not meant to recommend an outcome for this CVE Record.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:jwt_project:jwt:*:*:*:*:*:*:*:*
Версия до 5.4.3 (включая)

EPSS

Процентиль: 2%
0.00124
Низкий

7 High

CVSS3

Дефекты

CWE-326

Связанные уязвимости

CVSS3: 7
ubuntu
около 1 года назад

jwt v5.4.3 was discovered to contain weak encryption. NOTE: this issue has been disputed on the basis that key lengths are expected to be set by an application, not by this library. This dispute is subject to review under CNA rules 4.1.4, 4.1.14, and other rules; the dispute tagging is not meant to recommend an outcome for this CVE Record.

CVSS3: 7
debian
около 1 года назад

jwt v5.4.3 was discovered to contain weak encryption. NOTE: this issue ...

CVSS3: 7
github
около 1 года назад

jwt v5.4.3 was discovered to contain weak encryption.

EPSS

Процентиль: 2%
0.00124
Низкий

7 High

CVSS3

Дефекты

CWE-326