Vulnerabilities (CVE)

Filtered by vendor Tangyh Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-31579 1 Tangyh 1 Lamp-cloud 2024-11-21 N/A 9.8 CRITICAL
Dromara Lamp-Cloud before v3.8.1 was discovered to use a hardcoded cryptographic key when creating and verifying a Json Web Token. This vulnerability allows attackers to authenticate to the application via a crafted JWT token.