CuraSec

tag: Jwt · 1 items

  • Engineer — Plan: Any n8n Enterprise deployment trusting multiple external JWT issuers is exposed to cross-tenant account takeover via iss claim bypass; patch n8n to the fixed version and audit multi-issuer OIDC/JWT configurations now.
  • SOC/IR — Skip
  • Leader — Skip