First published: Wed Apr 04 2018(Updated: )
The Auth0 authentication service before 2017-10-15 allows privilege escalation because the JWT audience is not validated.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Auth0 Auth0.js | <=8.10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.