Pyjwt

Latest version: v2.8.0

Vulnerabilities (3)

CVE/PVE Vulnerability ID Advisory Affected versions Severity Severity Score
CVE-2017-11424 35014

In PyJWT 1.5.0 and below the `invalid_strings` check in `HMACAlgorith…

  • <1.5.1
HIGH 7.5
CVE-2022-29217 48542

PyJWT 2.4.0 includes a fix for CVE-2022-29217: An attacker submitting…

  • >=1.5.0,<2.4.0
HIGH 7.5
PVE-2021-39458 39458

Pyjwt 1.0.0 includes a security fix: 'alg=None' header could bypass s…

  • <1.0.0
HIDDEN X.Y