CVE-2020-36255

Published
View on NVD ↗
CVSS v3
7.5
HIGH
CVSS v2
5
MEDIUM
Affected
1
PROJECT

Description

An issue was discovered in IdentityModel (aka ScottBrady.IdentityModel) before 1.3.0. The Branca implementation allows an attacker to modify and forge authentication tokens.

JWT style token handlers for Branca and PASETO in .NET. EdDSA support for Microsoft.IdentityModel.
GitHubGitHub
49