
CVE-2026-33996 LibJWT is a C JSON Web Token Library. Starting in version 3.0.0 and prior to version 3.3.0, the JWK parsing for RSA-PSS did not protect against a NULL value when expe… https://www.cve.org/CVERecord?id=CVE-2026-33996
Post summary
The post announces a vulnerability in LibJWT's JWK parsing for RSA‑PSS within certain versions, detailing the flaw but providing no PoC, exploit, or patch information.
