Fast JSON Web Token implementation
98%
Total Score
100
86
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-208205 fast-jwt is vulnerable to Insufficient Session Expiration in versions 1.5.0 - 6.2.4. | 1.5.0 - 6.2.4 | Medium |
AIKIDO-2026-394471 fast-jwt is vulnerable to Authorization Bypass in versions 0.0.1 - 6.2.4. | 0.0.1 - 6.2.4 | High |
AIKIDO-2026-885954 fast-jwt is vulnerable to Authentication Bypass in versions 0.0.1 - 6.3.0. | 0.0.1 - 6.3.0 | High |
AIKIDO-2026-957913 fast-jwt is vulnerable to Improper Verification of Cryptographic Signature in versions 6.2.4 - 6.2.4. | 6.2.4 - 6.2.4 | High |
AIKIDO-2026-933024 fast-jwt is vulnerable to Authentication Bypass in versions 6.2.0 - 6.2.4. | 6.2.0 - 6.2.4 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
asn1.js Version ^5.4.1 | — | — |
mnemonist Version ^0.40.0 | — | — |
@lukeed/ms Version ^2.0.2 | — | — |
safe-regex2 Version ^5.1.0 | — | — |
ecdsa-sig-formatter Version ^1.0.11 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant