CVE-2024-50634: Sbond Watcharr
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
A vulnerability in a weak JWT token in Watcharr v1.43.0 and below allows attackers to perform privilege escalation using a crafted JWT token. This vulnerability is not limited to privilege escalation but also affects all functions that require authentication.
Affected products
- Sbond Watcharr: up to and including 1.43.0
Published 2024-11-08. Last modified 2026-06-17.