NATS Server 2.x before 2.2.0 and JWT library before 2.0.1 have Incorrect Access Control because Import Token bindings are mishandled.
The product does not handle or incorrectly handles an exceptional condition.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jwt_library | Nats | * | 2.0.1 (excluding) |
Nats_server | Nats | 2.0.0 (including) | 2.2.0 (excluding) |
Golang-github-nats-io-jwt | Ubuntu | groovy | * |
Golang-github-nats-io-jwt | Ubuntu | hirsute | * |
Golang-github-nats-io-jwt | Ubuntu | impish | * |
Golang-github-nats-io-jwt | Ubuntu | kinetic | * |
Golang-github-nats-io-jwt | Ubuntu | lunar | * |
Golang-github-nats-io-jwt | Ubuntu | mantic | * |
Golang-github-nats-io-jwt | Ubuntu | trusty | * |