ZeroHour

CVE-2020-36255

CVSS 3.1
7.5 high
EPSS
2%p73
Published
()
Modified
Description

An issue was discovered in IdentityModel (aka ScottBrady.IdentityModel) before 1.3.0. The Branca implementation allows an attacker to modify and forge authentication tokens.

Vendors
identitymodel project
Products
identitymodel
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.