Описание
Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or enabled leading to unauthorized access in default installations.
EPSS
Процентиль: 89%
0.0386
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 9.8
github
около 2 месяцев назад
Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or enabled leading to unauthorized access in default installations.
EPSS
Процентиль: 89%
0.0386
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-287