CVE-2025-65730
EUVD-2025-20141205.12.2025, 16:15
Authentication Bypass via Hardcoded Credentials GoAway up to v0.62.18, fixed in 0.62.19, uses a hardcoded secret for signing JWT tokens used for authentication.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pommee | goaway | 𝑥 < 0.62.19 |
𝑥
= Vulnerable software versions
References