CVE-2026-62241
Published Jul 17, 2026clawvet self-hosted API server (apps/api) before 0.7.5 hard-codes a fallback JWT secret ('clawvet-dev-secret-change-me') in auth.ts and ships it as the default in .env.example. Be…
- evidence mentions
- 2
- Buzz score
- 17.5