CVE Watchtower ← Back to CVE ListCVE-2026-36721NVDVulnerability SummaryA lack of cryptographic signature verification in the validateAccessToken function of bookcars v8.3 allows attackers to bypass authentication via a forged JWT token.Severity LevelUNKNOWNPublished DateJun 9, 2026Last ModifiedJun 9, 2026Exploitation Status????EPSS Score (30-Day)0.02%ProbabilityRoot Weakness (CWE)N/AExternal Referenceshttps://github.com/CC-T-454455/Vulnerabilities/tree/master/bookcars/vulnerability-2