JWT Authentication Bypass and Algorithm Confusion Attacks
Server trust the token header to decide which algorithm verifies it, enabling forged credentials.
Selin Petrova
Server trust the token header to decide which algorithm verifies it, enabling forged credentials.