A security vulnerability has been detected in django-oauth django-oauth-toolkit 3.3.0. This issue affects the function _load_id_token of the file oauth2_provider/oauth2_validators.py. The manipulatio…
中危 CVSS 6.3
摘要
A security vulnerability has been detected in django-oauth django-oauth-toolkit 3.3.0. This issue affects the function _load_id_token of the file oauth2_provider/oauth2_validators.py. The manipulation leads to session expiration. The attack can be initiated remotely. The project was informed of the problem early through an issue report but has not responded yet.
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判 · 自动通道
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
数据来源
- NVD DATABASE
原始链接
- https://github.com/django-oauth/django-oauth-toolkit/
- https://github.com/django-oauth/django-oauth-toolkit/issues/1715
- https://vuldb.com/cve/CVE-2026-16206
- https://vuldb.com/submit/857897
- https://vuldb.com/submit/857923
- https://vuldb.com/vuln/380022
- https://vuldb.com/vuln/380022/cti
时间线
- nvd_ingest NVD