Launch Week Day 1: Announcing Security Design Review
CRITICAL 9.8 NuGet

Use of Hard-coded Credentials in AgileConfig.Client

GHSA-mj5w-w588-j6xg · CVE-2022-35540

Published · Modified

Description

Hardcoded JWT Secret in AgileConfig <1.6.8 Server allows remote attackers to use the generated JWT token to gain administrator access.

Ready to move

Start Securing

Free, no credit card | First findings in minutes