Description
JPaseto before 0.3.0 generates weak hashes when using v2.local tokens.
Remediation
References
https://github.com/paseto-toolkit/jpaseto/releases/tag/jpaseto-0.3.0
Related Vulnerabilities
CVE-2017-2646 Vulnerability in maven package org.keycloak:keycloak-saml-core
CVE-2021-23341 Vulnerability in maven package org.webjars:prismjs
CVE-2022-29577 Vulnerability in maven package org.owasp.antisamy:antisamy
CVE-2018-20676 Vulnerability in maven package org.webjars.bowergithub.twbs:bootstrap
CVE-2019-10400 Vulnerability in maven package org.jenkins-ci.plugins:script-security