CVE-2024-25190
08.02.2024, 17:15
l8w8jwt 2.2.1 uses memcmp (which is not constant time) to verify authentication, which makes it easier to bypass authentication via a timing side channel.Enginsight
Vendor | Product | Version |
---|---|---|
glitchedpolygons | l8w8jwt | 2.2.1 |
𝑥
= Vulnerable software versions