JWT Key Exposure in GO Admin Version 2.0.12 Affects Go-Admin Team
CVE-2022-42980
9.8CRITICAL
What is CVE-2022-42980?
A security flaw exists in GO Admin version 2.0.12, where the application utilizes the same string 'go-admin' as its production JWT key. This practice can lead to significant vulnerabilities, allowing unauthorized individuals to forge valid JWTs, potentially compromising the security of user sessions and sensitive data.
