Описание
Improper Authentication in Auth0.AuthenticationApi
Auth0 auth0.net before 6.5.4 has Incorrect Access Control because IdentityTokenValidator can be accidentally used to validate untrusted ID tokens.
Пакеты
Наименование
Auth0.AuthenticationApi
nuget
Затронутые версииВерсия исправления
>= 5.8.0, < 6.5.4
6.5.4
Связанные уязвимости
CVSS3: 7.5
nvd
больше 6 лет назад
Auth0 auth0.net before 6.5.4 has Incorrect Access Control because IdentityTokenValidator can be accidentally used to validate untrusted ID tokens.