CVE-2024-45607 | Secreto31126 whatsapp-api-js up to 4.0.2 WhatsAppAPI.verifyRequestSignature signature verification (GHSA-mwhf-vhr5-7j23)
A vulnerability classified as problematic has been found in Secreto31126 whatsapp-api-js up to 4.0.2. Affected is the function WhatsAppAPI.verifyRequestSignature. The manipulation leads to improper verification of cryptographic signature.
This vulnerability is traded as CVE-2024-45607. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.