CVE Vulnerabilities

CVE-2023-53951

Improper Verification of Cryptographic Signature

Published: Dec 19, 2025 | Modified: Dec 19, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Ever Gauzy v0.281.9 contains a JWT authentication vulnerability that allows attackers to exploit weak HMAC secret key implementation. Attackers can leverage the exposed JWT token to authenticate and gain unauthorized access with administrative permissions.

Weakness

The product does not verify, or incorrectly verifies, the cryptographic signature for data.

References