Vulnerabilities/

Authentication Bypass in hapi-auth-jwt2

Severity:
High

Description

Versions of hapi-auth-jwt2 prior to version 5.1.2 are affected by a complete authentication bypass vulnerability when in the try authentication mode.

Recommendation

Update the hapi-auth-jwt2 package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
hapi-auth-jwt2
Anything's wrong? Let us know Last updated on January 09, 2023

This issue is available in SmartScanner Professional

See Pricing