Логотип exploitDog
bind:CVE-2025-35940
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-35940

Количество 2

Количество 2

nvd логотип

CVE-2025-35940

8 месяцев назад

The ArchiverSpaApi ASP.NET application uses a hard-coded JWT signing key. An unauthenticated remote attacker can generate and use a verifiable JWT token to access protected ArchiverSpaApi URL endpoints.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-5wcp-x98w-p534

8 месяцев назад

The ArchiverSpaApi ASP.NET application uses a hard-coded JWT signing key. An unauthenticated remote attacker can generate and use a verifiable JWT token to access protected ArchiverSpaApi URL endpoints.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-35940

The ArchiverSpaApi ASP.NET application uses a hard-coded JWT signing key. An unauthenticated remote attacker can generate and use a verifiable JWT token to access protected ArchiverSpaApi URL endpoints.

CVSS3: 8.1
0%
Низкий
8 месяцев назад
github логотип
GHSA-5wcp-x98w-p534

The ArchiverSpaApi ASP.NET application uses a hard-coded JWT signing key. An unauthenticated remote attacker can generate and use a verifiable JWT token to access protected ArchiverSpaApi URL endpoints.

CVSS3: 8.1
0%
Низкий
8 месяцев назад

Уязвимостей на страницу