CVE

CVE-2021-27306

CVE-2021-27306

An improper access control vulnerability in the JWT plugin in Kong Gateway prior to 2.3.0.0 allows unauthenticated users access to authenticated routes without a valid token JWT.

Source: CVE-2021-27306

Exit mobile version