Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

How to Spot Mixed symmetric and asymmetric algorithms #250

Open
mrthankyou opened this issue Feb 10, 2021 · 0 comments
Open

How to Spot Mixed symmetric and asymmetric algorithms #250

mrthankyou opened this issue Feb 10, 2021 · 0 comments

Comments

@mrthankyou
Copy link

mrthankyou commented Feb 10, 2021

Please do not report security vulnerabilities here. The Responsible Disclosure Program details the procedure for disclosing security issues.

Thank you in advance for helping us to improve this library! Please read through the template below and answer all relevant questions. Your additional work here is greatly appreciated and will help us respond as quickly as possible. For general support or usage questions, use the Auth0 Community or Auth0 Support. Finally, to avoid duplicates, please search existing Issues before submitting one here.

By submitting an Issue to this repository, you agree to the terms within the Auth0 Code of Conduct.

Description

If I'm code-reviewing an application that utilizes your express plugin how would I spot code cases where the developer mixed symmetric and asymmetric (ie HS256/RS256) algorithms?

Thanks for your help!

Reproduction

N/A

Environment

N/A

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant