CVE-2025-65430
EUVD-2025-20337715.12.2025, 14:15
An issue was discovered in allauth-django before 65.13.0. IdP: marking a user as is_active=False after having handed tokens for that user while the account was still active had no effect. Fixed the access/refresh tokens are now rejected.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| allauth | allauth | 𝑥 < 65.13.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration