Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-55735

Опубликовано: 01 авг. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Improper Verification of Cryptographic Signature in ueberauth guardian allows an unauthenticated attacker to revoke a victim's session with a forged token.

Guardian.revoke/3 in lib/guardian.ex decodes the supplied token with peek/1, which performs no signature verification (it only base64-decodes the JWT header and payload). The resulting unverified claims are forwarded directly to the configured token module's revoke callback and the implementation's on_revoke callback, a state-mutating sink. The sibling operations refresh/2 and exchange/4 both call decode_and_verify first, so the signature is checked before anything acts on the claims; revoke/3 is the only state-mutating path that acts on claims without verifying the signature.

An attacker who knows or guesses a victim's identifying claim values (jti, sub) can forge a JWT carrying those claims, sign it with an arbitrary key, and submit it to any endpoint that funnels a caller-supplied token into Guardian.revoke/3 (the standard logo

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ueberauth:guardian:*:*:*:*:*:*:*:*
Версия от 1.0.0 (включая) до 2.4.1 (исключая)

EPSS

Процентиль: 27%
0.00337
Низкий

7.5 High

CVSS3

Дефекты

CWE-347

EPSS

Процентиль: 27%
0.00337
Низкий

7.5 High

CVSS3

Дефекты

CWE-347
Уязвимость CVE-2026-55735