CVE-2020-36255
Published
CVSS v3
7.5
HIGH
CVSS v2
5
MEDIUM
Affected
1
PROJECT
Description
An issue was discovered in IdentityModel (aka ScottBrady.IdentityModel) before 1.3.0. The Branca implementation allows an attacker to modify and forge authentication tokens.
JWT style token handlers for Branca and PASETO in .NET. EdDSA support for Microsoft.IdentityModel.