RSS   Vulnerabilities for 'Kong gateway'   RSS

2021-03-18
 
CVE-2021-27306

CWE-863
 

 
An improper access control vulnerability in the JWT plugin in Kong Gateway prior to 2.3.2.0 allows unauthenticated users access to authenticated routes without a valid token JWT.

 

 >>> Vendor: Konghq 2 Products
Docker-kong
Kong gateway


Copyright 2024, cxsecurity.com

 

Back to Top