← volver
CVE-2025-45770

CVE-2025-45770

CVSS 7 HIGHEPSS 0.1%CWE-326
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 7EPSS 0.1%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
31 jul 2025Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
jwt v5.4.3 was discovered to contain weak encryption. NOTE: this issue has been disputed on the basis that key lengths are expected to be set by an application, not by this library. This dispute is subject to review under CNA rules 4.1.4, 4.1.14, and other rules; the dispute tagging is not meant to recommend an outcome for this CVE Record.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H
Productos afectados
n/a · n/a

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →