An issue was discovered in IdentityModel (aka ScottBrady.IdentityModel) before 1.3.0. The Branca implementation allows an attacker to modify and forge authentication tokens.
Link | Tags |
---|---|
https://github.com/scottbrady91/IdentityModel/issues/4 | broken link third party advisory issue tracking |
https://github.com/scottbrady91/IdentityModel/issues/3 | broken link third party advisory issue tracking |
https://github.com/scottbrady91/IdentityModel/compare/1.2.0...1.3.0 | patch third party advisory release notes |