Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-583x-23h9-f5w7

Опубликовано: 19 апр. 2023
Источник: github
Github: Прошло ревью

Описание

Strapi does not verify the access or ID tokens issued during the OAuth flow

Strapi 3.2.1 until 4.6.0 does not verify the access or ID tokens issued during the OAuth flow when the AWS Cognito login provider is used for authentication. A remote attacker could forge an ID token that is signed using the 'None' type algorithm to bypass authentication and impersonate any user that use AWS Cognito for authentication.

Пакеты

Наименование

@strapi/plugin-users-permissions

npm
Затронутые версииВерсия исправления

>= 3.2.1, < 4.6.0

4.6.0

EPSS

Процентиль: 98%
0.66479
Средний

Связанные уязвимости

CVSS3: 7.5
nvd
почти 3 года назад

Strapi through 4.5.5 does not verify the access or ID tokens issued during the OAuth flow when the AWS Cognito login provider is used for authentication. A remote attacker could forge an ID token that is signed using the 'None' type algorithm to bypass authentication and impersonate any user that use AWS Cognito for authentication.

EPSS

Процентиль: 98%
0.66479
Средний