Filtered by vendor Tangyh Subscriptions
Filtered by product Lamp-cloud Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-31579 1 Tangyh 1 Lamp-cloud 2024-09-17 9.8 Critical
Dromara Lamp-Cloud before v3.8.1 was discovered to use a hardcoded cryptographic key when creating and verifying a Json Web Token. This vulnerability allows attackers to authenticate to the application via a crafted JWT token.