9.3
/ 10
CRITICAL
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/SC:N/VI:H/SI:N/VA:N/SA:N
Description
HackTheBox — Principal Difficulty: Medium OS: Linux Platform: HackTheBox --- Overview Web application running pac4j-jwt v6.0.3 — vulnerable to CVE-2026-29000. The public RSA key is exposed unauthenticated via a JWKS endpoint and can be used to forge a...
Basic Information
ID
DCE7EEC0-E42F-5105-87F4-FBCC4CDE31C4
Published
May 5, 2026 at 15:06
Modified
May 5, 2026 at 15:11