Insecure digital certificates In github.com/distribution/distribution
Description
Distribution's token authentication allows attacker to inject an untrusted signing key in a JWT in github.com/distribution/distribution Distribution's token authentication allows attacker to inject an untrusted signing key in a JWT in github.com/distribution/distribution
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package |
|---|---|
go |
Aliases
1. 2. 3. 4. 5. 6.
References
1.