"value":"A CWE-321 \"Use of Hard-coded Cryptographic Key\" in the JWT signing in Q-Free MaxTime less than or equal to version 2.11.0 allows an unauthenticated remote attacker to bypass the authentication via crafted HTTP requests."
"value":"Un CWE-321 \"Uso de clave criptogr\u00e1fica codificada\" en la firma JWT en Q-Free MaxTime menor o igual a la versi\u00f3n 2.11.0 permite a un atacante remoto no autenticado eludir la autenticaci\u00f3n mediante solicitudes HTTP manipulado."