importantSYS.SOURCE: The Hacker News• 2026-09-16T10:48:06+05:30
Critical JWT Bypass Vulnerability in WSO2 API Manager Under Active Exploitation
A critical JWT authentication vulnerability (CVE-2026-5430) in WSO2 API Manager allows attackers to bypass security checks using forged admin tokens, enabling unauthorized access and potential account takeover. Users are urged to apply available patches immediately to mitigate active exploitation attempts.
A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according to findings from watchTowr.
The vulnerability, tracked as CVE-2026-5430 (CVSS score: 9.8/10.0), is a case of improper verification of a cryptographic signature that could result in account takeover. Hacktron Team has been credited with discovering and reporting the flaw.
"JWT authentication
*** END OF TRANSMISSION ***