Files
CVEs-PoC/2021/CVE-2021-27306.md
T
2024-06-18 02:51:15 +02:00

727 B

CVE-2021-27306

Description

An improper access control vulnerability in the JWT plugin in Kong Gateway prior to 2.3.2.0 allows unauthenticated users access to authenticated routes without a valid token JWT.

POC

Reference

Github