Authlib 1.7.2 及以下版本存在一个漏洞:发现(discovery)JSON 元数据在缓存时未进行验证,也未与颁发者(issuer)来源绑定。这使得被污染的发现响应能够将所有端点值替换为攻击者控制的值,而非仅允许与已配置服务器元数据 URL 同源(origin)的端点 URL。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet