Interesting JWT vulnerability. bhavukjain.com/blog/2020/05/…
4
7
2
27
Yep, I realized that after I posted and made a clarifying post in the thread, which you should have saw?
1
I should have replied to that one. It’s barely a logic bug using JWT. I’m writing up more details in a blog post, will post a link shortly.
1
Posted a full writeup with a lot more details: aaronparecki.com/2020/05/31/…
May 31, 2020 · 8:51 PM UTC
1

