Description
JPaseto before 0.3.0 generates weak hashes when using v2.local tokens.
Remediation
References
https://github.com/paseto-toolkit/jpaseto/releases/tag/jpaseto-0.3.0
Related Vulnerabilities
CVE-2020-28445 Vulnerability in npm package npm-help
CVE-2020-2177 Vulnerability in maven package org.jenkins-ci.plugins:copr
CVE-2019-10323 Vulnerability in maven package org.jenkins-ci.plugins:artifactory
CVE-2019-14772 Vulnerability in maven package org.webjars.npm:verdaccio
CVE-2021-42392 Vulnerability in maven package com.h2database:h2