CVE-2025-65730
05.12.2025, 16:15
Authentication Bypass via Hardcoded Credentials GoAway up to v0.62.18, fixed in 0.62.19, uses a hardcoded secret for signing JWT tokens used for authentication.Enginsight
| Vendor | Product | Version |
|---|---|---|
| pommee | goaway | 𝑥 < 0.62.19 |
𝑥
= Vulnerable software versions
References