CVE-2026-5430: the JWT validator that skipped signature checking when it met an algorithm it did not know October 6, 2026 · Dev.to Read full story at source