CRITICAL
An insecure authentication vulnerability in the /api/social-sign-in endpoint of bookcars v8.3 allows attackers to bypass authentication via a forged JWT token
Published Jun 9, 2026
9.1
CRITICALCVSS 3.1
EPSS 0.53%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.