CVE-2016-7036
23.01.2017, 21:59
python-jose before 1.3.2 allows attackers to have unspecified impact by leveraging failure to use a constant time comparison for HMAC keys.Enginsight
Vendor | Product | Version |
---|---|---|
python-jose_project | python-jose | 𝑥 ≤ 1.3.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References