CVE-2019-16929
08.10.2019, 13:15
Auth0 auth0.net before 6.5.4 has Incorrect Access Control because IdentityTokenValidator can be accidentally used to validate untrusted ID tokens.Enginsight
Vendor | Product | Version |
---|---|---|
auth0 | auth0.net | 5.8.0 ≤ 𝑥 ≤ 6.5.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration