← Back to CVE List

CVE-2025-1293

Published: 2025-02-20T01:15Z
Last Modified: 2025-02-20T01:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Hermes versions up to 0.4.0 improperly validated the JWT provided when using the AWS ALB authentication mode, potentially allowing for authentication bypass. This vulnerability, CVE-2025-1293, was fixed in Hermes 0.5.0. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt