Loading
Generated remediation guidance and an executive summary. No account required.
pyjwt v2.10.1 was discovered to contain weak encryption. NOTE: this is disputed by the Supplier because the key length is chosen by the application that uses the library (admittedly, library users may benefit from a minimum value and a mechanism for opting in to strict enforcement).
Cite this page
CVE-2025-45768. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2025-45768
Use CWE-311, Pyjwt Project vendor hub and Pyjwt product page to widen CVE-2025-45768 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-32597, CVE-2017-11424 and CVE-2022-29217 for nearby disclosures in the same product family.