CVE-2026-5430: the JWT validator that skipped signature checking when it met an algorithm it did not know

· Dev.to