CVE-2026-50202 | SteeltoeOSS Steeltoe.Security.Authentication.CloudFoundryBase up to 3.3.x JWT Signing Key exposure of resource (GHSA-7fqc-p256-7pwj)
A vulnerability labeled as problematic has been found in SteeltoeOSS Steeltoe.Security.Authentication.CloudFoundryBase, Steeltoe.Security.Authentication.JwtBearer and Steeltoe.Security.Authentication.OpenIdConnect up to 3.3.x. The affected element is an unknown function of the component JWT Signing Key Handler. Such manipulation leads to exposure of resource.
This vulnerability is listed as CVE-2026-50202. The attack may be performed from remote. There is no available exploit.
The affected component should be upgraded.VulDB Recent EntriesRead More