VDB
GHSA-2C64-VJ8G-VWRQ
GHSA-2C64-VJ8G-VWRQ
PUBLISHED
Incorrect handling of credential expiry by /nats-io/nats-server
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Go | github.com/nats-io/nats-server/v2 | 0 |
| github.com | nats-io/nats-server/v2 | 0, 0 |
| github.com | nats-io/nats-server/v2 | 0, 0, 0 |
Timeline
- May 21, 2021 CVE Published
- Oct 3, 2025 CVE Updated
References
- https://github.com/nats-io/nats-server/security/advisories/GHSA-2c64-vj8g-vwrq url
- https://advisories.nats.io/CVE/CVE-2020-26892.txt url
- https://github.com/nats-io/nats-server product
- GitHub Advisory GHSA-2c64-vj8g-vwrq vendor-advisory
- https://github.com/nats-io/jwt/commit/e11ce317263cef69619fc1ca743b195d02aa1d8a url