CVE-2024-50634: Sbond Watcharr

High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability in a weak JWT token in Watcharr v1.43.0 and below allows attackers to perform privilege escalation using a crafted JWT token. This vulnerability is not limited to privilege escalation but also affects all functions that require authentication.

Affected products

  • Sbond Watcharr: up to and including 1.43.0

Published 2024-11-08. Last modified 2026-06-17.