CVE-2026-36721
09.06.2026, 19:17
A lack of cryptographic signature verification in the validateAccessToken function of bookcars v8.3 allows attackers to bypass authentication via a forged JWT token.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.