CVE-2025-12466
30.10.2025, 00:15
Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal Simple OAuth (OAuth2) & OpenID Connect allows Authentication Bypass.This issue affects Simple OAuth (OAuth2) & OpenID Connect: from 6.0.0 before 6.0.7.Enginsight
| Vendor | Product | Version |
|---|---|---|
| simple_oauth_project | simple_oauth | 6.0.0 ≤ 𝑥 < 6.0.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration