🚨 EUVD-2026-16899
📊 Score: 5.8/10 (CVSS v3.1)
📦 Product: libjwt
🏢 Vendor: benmcollins
📅 Updated: 2026-03-27
📝 LibJWT is a C JSON Web Token Library. Starting in version 3.0.0 and prior to version 3.3.0, the JWK parsing for RSA-PSS did not protect against a NULL value when expecting to parse JSON string values. A specially crafted JWK file could exploit this behavi...
🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-16899
