ever-co/ever-gauzy

ever-co/ever-gauzy

Releases4.02K
Frequency12 hours
Last Release
Stars3.72K
Ever® Gauzy™ - Open Business Management Platform (ERP/CRM/HRM/ATS/PM) - https://gauzy.co

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL

Ever Gauzy v0.281.9 contains a JWT authentication vulnerability that allows attackers to exploit weak HMAC secret key implementation. Attackers can leverage the exposed JWT token to authenticate and gain unauthorized access with administrative permissions.