CVE-2026-107275 | fastify fastify-jwt up to 10.2.2 Parser expiresIn/notBefore/maxAge input validation
A vulnerability classified as critical has been found in fastify fastify-jwt up to 10.2.2. The impacted element is an unknown function of the component Parser. Performing a manipulation of the argument expiresIn/notBefore/maxAge results in improper input validation.
This vulnerability was named CVE-2026-107275. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More