Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-31580

light-oauth2 before version 2.1.27 obtains the public key without any verification. This could allow attackers to authenticate to the application with a crafted JWT token.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 39.4%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2023-31580


Contact Us

Shodan ® - All rights reserved