fast-jwt 提供了快速高效的 JSON Web Token (JWT) 实现。在版本 6.3.0 之前,fast-jwt 的 createVerifier 函数接受 clockTolerance 参数为 Infinity,因为其选项验证仅检查类型和是否为负数,而未验证数值是否为有限值(finiteness)。在 validateClaimDateValue 函数中,无穷大且为正的修改值会导致 exp(过期时间)和 nbf(生效前时间)的比较始终通过,从而允许已过期的或尚未激活的令牌被接受。此外,验证器缓存也会
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-107722 | 9.8 CRITICAL | fast-jwt: Incomplete patch of CVE-2026-34950: Non-whitespace key-prefix re-enables RSA→HS2 |
| CVE-2026-107723 | 8.1 HIGH | fast-jwt : Silent claim-validator bypass when JWT payload is a JSON array |
| CVE-2026-107720 | 7.4 HIGH | fast-jwt: createVerifier accepts unsigned JWTs when key is '' or null and algorithms is ex |
| CVE-2026-107724 | 7.4 HIGH | fast-jwt treats raw public JWK JSON as an HMAC secret, enabling HS256 token forgery |
| CVE-2026-107719 | 4.2 MEDIUM | fast-jwt: Verifier cache accepts expired JWTs without iat. |
No comments yet