Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-31033 PoC — Java JWT 安全漏洞

Source
Associated Vulnerability
Title:Java JWT 安全漏洞 (CVE-2024-31033)
Description:Java JWT是jwtk开源的一个用于 Java 和 Android 的 JSON Web 令牌。 Java JWT (JJWT)0.12.5版本存在安全漏洞,该漏洞源于 DefaultJwtParser 类中的 setSigningKey() 方法和 DefaultJwtBuilder 类中的 signWith() 方法中存在安全问题,会忽略某些字符,导致用户认为拥有强密钥。
Description
Details of CVE-2024-31033
File Snapshot

None
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.