Threat actors are actively exploiting a JWT bypass vulnerability in WSO2 API Manager to forge admin tokens and gain unauthorized administrative access. The vulnerability allows attackers to circumvent authentication mechanisms and potentially compromise affected API management systems. Organizations running vulnerable versions of WSO2 API Manager are advised to apply available patches immediately.