📦 Joserfc

by Hsiaoming

🔍 What is Joserfc?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-27932

HIGH CVSS 7.5 Mar 3, 2026

This vulnerability allows unauthenticated attackers to cause CPU exhaustion denial-of-service by sending specially crafted JWE tokens with extremely high PBKDF2 iteration counts. It affects all applic...

CVE-2025-65015

HIGH CVSS 7.5 Nov 18, 2025

This vulnerability in the joserfc Python library allows attackers to cause denial-of-service through memory exhaustion by sending extremely large JWT tokens. When the library processes oversized token...