vendor

pyjwt project

3 thingsrelated by NVD
Severity

Its products

pyjwt 3

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

python-pyjwt: PyJWT: Authentication bypass due to forged JSON Web Tokens
CVE-2026-48526
Severity high
python-pyjwt: PyJWT: Verifier-side algorithm bypass leads to unauthorized information access
CVE-2026-48523
Severity medium
pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 §4.1.11 MUST violation)
CVE-2026-32597
Severity high