Package impact
Maven / com.nimbusds:nimbus-jose-jwt
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2017-12974 | high | 7.5 | 7.5 | 9y ago | Improper Verification of Cryptographic Signature in Nimbus JOSE+JWT | |
| CVE-2017-12972 | high | 7.5 | 7.5 | 9y ago | Nimbus JOSE+JWT missing overflow check | |
| CVE-2017-12973 | low | 3.1 | 3.1 | 9y ago | Nimbus JOSE+JWT vulnerable to padding oracle attack |