Access Control Vulnerability in NATS nats-server by NATS.IO
CVE-2020-26892
9.8CRITICAL
What is CVE-2020-26892?
The JWT library present in NATS nats-server versions prior to 2.1.9 exhibits a significant access control issue stemming from improper handling of expired credentials. This can potentially allow unauthorized access, jeopardizing the security and integrity of applications that depend on NATS messaging systems.