vendor
pyjwt project
Severity
Its products
Being told
The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.
Every thing
| python-pyjwt: PyJWT: Authentication bypass due to forged JSON Web Tokens CVE-2026-48526 | Severity high |
| python-pyjwt: PyJWT: Verifier-side algorithm bypass leads to unauthorized information access CVE-2026-48523 | Severity medium |
| pyjwt: PyJWT accepts unknown `crit` header extensions (RFC 7515 §4.1.11 MUST violation) CVE-2026-32597 | Severity high |