HIGHNuGet

Microsoft ASP.NET Core project templates vulnerable to denial of service

Microsoft ASP.NET Core project templates vulnerable to denial of service

CVE-2024-21319Published 2 years agoUpdated 2 weeks agoSource: OSV

Affected packages

  • Microsoft.IdentityModel.JsonWebTokensbefore 5.7.0
  • System.IdentityModel.Tokens.Jwtbefore 5.7.0

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Microsoft ASP.NET Core project templates vulnerable to denial of service | HackTribune