Executive brief
jose4j is vulnerable to DoS via compressed JWE content
Affected products
- Maven org.bitbucket.b_c:jose4j
Junglewise Threat Intelligence
CVE-2024-29371 · Severity: low · CVSS 3.1 · Published 2025-12-17
Technologies: org.bitbucket.b_c:jose4j (Maven). Vendors: Maven.
jose4j is vulnerable to DoS via compressed JWE content