Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-24pr-8ggp-h88c

Опубликовано: 12 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or enabled leading to unauthorized access in default installations.

Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or enabled leading to unauthorized access in default installations.

EPSS

Процентиль: 89%
0.0386
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 месяцев назад

Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or enabled leading to unauthorized access in default installations.

EPSS

Процентиль: 89%
0.0386
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287