Ever Gauzy v0.281.9 JWT Authentication Weakness via HMAC Secret
Vulnerability Description
Ever Gauzy v0.281.9 contains a JWT authentication vulnerability that allows attackers to exploit weak HMAC secret key implementation. Attackers can leverage the exposed JWT token to authenticate and gain unauthorized access with administrative permissions.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-53951
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- nu11secur1ty
Affected Vendor
Gauzy
View all reports →