VYPR
High severity7.5NVD Advisory· Published Aug 27, 2021· Updated Jun 17, 2026

CVE-2021-35342

CVE-2021-35342

Description

The useradm service 1.14.0 (in Northern.tech Mender Enterprise 2.7.x before 2.7.1) and 1.13.0 (in Northern.tech Mender Enterprise 2.6.x before 2.6.1) allows users to access the system with their JWT token after logout, because of missing invalidation (if the JWT verification cache is enabled).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Northern.tech/Mender Enterprisedescription
  • Range: 1.14.0 (in 2.7.x before 2.7.1), 1.13.0 (in 2.6.x before 2.6.1)
  • cpe:2.3:a:northern.tech:useradm:1.14.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:northern.tech:useradm:1.14.0:*:*:*:*:*:*:*
    • cpe:2.3:a:northern.tech:useradm:1.13.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.