Go implementation of JSON Web Tokens (JWT).
github.com/golang-jwt/[email protected]+incompatible has vulnerabilities — update to latest
Update to >= 5.2.2 to fix known vulnerabilities
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| high | CVE-2025-30204 | jwt-go allows excessive memory allocation during header parsing | 4.5.2 |
| unknown | CVE-2025-30204 | Excessive memory allocation during header parsing in github.com/golang-jwt/jwt | 5.2.2 |
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/go/github.com/golang-jwt/jwtLast updated · 2021-07-30T20:54:04Z