JSON Web Tokens
cpe:2.3:a:json_web_token_project:json_web_token:*:*:*:*:go:*:*
A vulnerability exists due to improper implementation of JSON Web Tokens (JWTs), allowing an unauthenticated remote attacker to guess valid session IDs. This could lead to impersonation of users and unauthorized access to their accounts.
Exploitation of this vulnerability could result in unauthorized access to user accounts, allowing attackers to impersonate users and potentially misuse their privileges.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.