Skip to main content

CVE detail

CVE-2021-47663

Due to improper JSON Web Tokens implementation an unauthenticated remote attacker can guess a valid session ID and therefore impersonate a user to gain full access.

CVSS 8.1 · High