nov
4 exploits
Active since Sep 2016
jose-php < 2.2.0 - Timing Attack via HMAC Comparison
CVSS 3.7
Karaz Karazal < 2025-04-14 - Reflected Cross-Site Scripting via Lang Parameter
CVSS 7.2
json-jwt < 1.11.0 - Improper Authentication via JWE String Parsing
CVSS 7.5
Doorkeeper::OpenidConnect <1.5.4 - Open Redirect
CVSS 6.1