Fleet has a JWT signature bypass vulnerability in Azure AD MDM enrollment in github.com/fleetdm/fleet
{ "url": "https://pkg.go.dev/vuln/GO-2026-4335", "review_status": "REVIEWED" }
{ "custom_ranges": [ { "type": "ECOSYSTEM", "events": [ { "introduced": "0" }, { "fixed": "4.43.5-0.20260112202845-e225ef57912c" } ] } ] }
"https://vuln.go.dev/ID/GO-2026-4335.json"