{
  "title": "CVE del giorno — CVE-2026-5430 (CVSS 10,0, critica)",
  "title_variants": [
    {
      "id": "v0",
      "title": "CVE del giorno — CVE-2026-5430 (CVSS 10,0, critica)"
    },
    {
      "id": "v1",
      "title": "CVE-2026-5430: vulnerabilità critica, CVSS 10,0/10, tipo CWE-347, sfruttabile da"
    }
  ],
  "description": "CVE-2026-5430: vulnerabilità critica, CVSS 10,0/10, tipo CWE-347, sfruttabile da remoto, senza privilegi, senza interazione utente. The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows an attacker to craft a JWT with…",
  "keywords": [
    "cve",
    "cve-2026-5430",
    "vulnerabilità",
    "vulnerabilità critica",
    "cwe-347",
    "cvss",
    "sicurezza informatica",
    "cybersecurity",
    "nvd",
    "aggiornamento di sicurezza"
  ],
  "scenes": [
    {
      "title": "CVE-2026-5430",
      "subtitle": "CVSS 10,0",
      "text": "CVE-2026-5430: gravità critica, punteggio CVSS 10,0 su 10 secondo il National Vulnerability Database."
    },
    {
      "title": "CWE-347",
      "subtitle": "CWE-347 · CVSS v3.1",
      "text": "The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows an attacker to craft a JWT with an unsupported algorithm, which is then incorrectly…"
    },
    {
      "title": "ESPOSIZIONE E MITIGAZIONE",
      "subtitle": "sfruttabile da remoto, senza privilegi, senza interazione utente",
      "text": "Vulnerabilità sfruttabile da remoto, senza privilegi, senza interazione utente. Applica tempestivamente l'aggiornamento del fornitore e consulta l'avviso ufficiale su NVD."
    }
  ],
  "publication_date": "2026-08-08T00:30:00.210Z",
  "duration": 20,
  "topic": "cve",
  "lang": "it",
  "translation_group": "cve-2026-08-08",
  "poster": "cve-2026-08-08.jpg",
  "preview": "cve-2026-08-08.gif",
  "og_card": "cve-2026-08-08.og.jpg",
  "audiogram": "cve-2026-08-08.audiogram.mp4",
  "captions": "cve-2026-08-08.vtt",
  "generation": {
    "procedural": true,
    "ai_generated": [
      "background",
      "voice"
    ],
    "real_data_source": "official public API",
    "filmed_real_event": false,
    "disclosure": "Procedurally generated from real public-source data; abstract AI-generated backgrounds; synthetic (TTS) voice. No real event is filmed or altered."
  },
  "transcript_text": "CVE-2026-5430: gravità critica, punteggio CVSS 10,0 su 10 secondo il National Vulnerability Database. The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows an attacker to craft a JWT with an unsupported algorithm, which is then incorrectly… Vulnerabilità sfruttabile da remoto, senza privilegi, senza interazione utente. Applica tempestivamente l'aggiornamento del fornitore e consulta l'avviso ufficiale su NVD.",
  "transcript": [
    {
      "start": 0,
      "end": 6.667,
      "text": "CVE-2026-5430: gravità critica, punteggio CVSS 10,0 su 10 secondo il National Vulnerability Database."
    },
    {
      "start": 6.667,
      "end": 13.333,
      "text": "The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows an attacker to craft a JWT with an unsupported algorithm, which is then incorrectly…"
    },
    {
      "start": 13.333,
      "end": 20,
      "text": "Vulnerabilità sfruttabile da remoto, senza privilegi, senza interazione utente. Applica tempestivamente l'aggiornamento del fornitore e consulta l'avviso ufficiale su NVD."
    }
  ]
}