CVE-2025-61920 | Authlib up to 1.6.4 JWS/JWT memory allocation (GHSA-pq5p-34cr-23v9)
A vulnerability marked as critical has been reported in Authlib up to 1.6.4. This issue affects some unknown processing of the component JWS/JWT. The manipulation leads to uncontrolled memory allocation.
This vulnerability is uniquely identified as CVE-2025-61920. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.