Skip to content
archiveexploit · 16 Sep 2026 · 05:18 UTC

Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens

EXPLCVE-2026-5430source · THN

last 60 dispatches · spectrum

A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according to findings from watchTowr. The vulnerability, tracked as CVE-2026-5430 (CVSS score: 9.8/10.0), is a case of improper verification of a cryptographic signature that could result in account takeover. Hacktron Team has been credited with discovering and reporting the flaw. …

CVE · detail
grounded ✓primary source ↗
Early access

Get the next one first.

Early access opens the actor API and MCP server first, plus alerts when an adversary you follow lands on the wire. One email when it's ready. Nothing else, ever.

bot-protected