CVE-2018-7307
06.03.2018, 15:29
The Auth0 Auth0.js library before 9.3 has CSRF because it mishandles the case where the authorization response lacks the state parameter.
Vendor | Product | Version |
---|---|---|
auth0 | auth0.js | 𝑥 < 9.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration