What is CVE-2026-53431?
This vulnerability in malach-it Boruta OAuth server allows authentication bypass through capture-replay of expired JWT client assertions. An attacker with a previously valid assertion can reuse it to authenticate as the OAuth client. Affected administrators should immediately patch and enforce anti-replay measures for JWT-based client authentication.
Azərbaycanca: Bu zəiflik malach-it Boruta OAuth serverində aşkarlanıb. İstifadə müddəti bitmiş JWT client assertion əldə etmiş hücumçu, onu yenidən istifadə edərək sistemə daxil ola bilər. Təsirə məruz qalan sistemlərin administratorları dərhal yamaq tətbiq etməli və JWT-nin təkrar istifadəsini əngəlləyən konfiqurasiyaları aktivləşdirməlidir.
Related CVEs
link basis: same weakness class CWE-287
FAQ2
How can CVE-2026-53431 be exploited in malach-it Boruta OAuth server?
An attacker with a previously captured expired JWT client assertion can reuse it to authenticate against the OAuth server.
What should be done to protect against CVE-2026-53431?
Affected administrators should immediately apply the patch and enforce anti-replay measures for JWT-based client authentication.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.