First published: Thu Feb 08 2024(Updated: )
l8w8jwt 2.2.1 uses memcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timing side channel.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Glitchedpolygons L8w8jwt | =2.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.