Description
JPaseto before 0.3.0 generates weak hashes when using v2.local tokens.
Remediation
References
https://github.com/paseto-toolkit/jpaseto/releases/tag/jpaseto-0.3.0
Related Vulnerabilities
CVE-2016-10707 Vulnerability in maven package org.webjars.npm:jquery
CVE-2019-16943 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2013-4271 Vulnerability in maven package org.restlet:org.restlet
CVE-2021-21633 Vulnerability in maven package org.jenkins-ci.plugins:dependency-track
CVE-2018-11696 Vulnerability in maven package org.webjars.npm:node-sass