We found results for “”
CVE-2024-21319
Good to know:
Date: January 9, 2024
Microsoft Identity Denial of service vulnerability
Language: C#
Severity Score
Related Resources (7)
Severity Score
Weakness Type (CWE)
Improper Input Validation
CWE-20Uncontrolled Resource Consumption
CWE-400Insufficient Information
NVD-CWE-noinfoTop Fix
Upgrade Version
Upgrade to version system.identitymodel.tokens.jwt - 5.7.0;system.identitymodel.tokens.jwt - 6.34.0;system.identitymodel.tokens.jwt - 7.1.2;microsoft.identitymodel.jsonwebtokens - 5.7.0;microsoft.identitymodel.jsonwebtokens - 6.34.0;microsoft.identitymodel.jsonwebtokens - 7.1.2
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | NETWORK |
| Attack Complexity (AC): | LOW |
| Privileges Required (PR): | HIGH |
| User Interaction (UI): | NONE |
| Scope (S): | CHANGED |
| Confidentiality (C): | NONE |
| Integrity (I): | NONE |
| Availability (A): | HIGH |
Vulnerabilities
Projects
Contact Us


