The Null-Signature Trap: Unmasking the 10.0 CVSS Authentication Bypass in pac4j-jwt Vulnerability The Null-Signature Trap: Unmasking the 10.0 CVSS Authentication Bypass in pac4j-jwt ddos March 6, 2026 A critical vulnerability has been unearthed within the widely utilized Java authentication library, pac4j-jwt, empowering a malicious... Read More Read more about The Null-Signature Trap: Unmasking the 10.0 CVSS Authentication Bypass in pac4j-jwt