All 2 CVE vulnerabilities found in @fastify/oauth2, with AI-generated Chinese analysis, references, and POCs.
Vendor: npm
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-18165 | @fastify/oauth2 vulnerable to Login CSRF via plantable OAuth state cookies CWE-352 | 4.2 | Medium | 2026-08-15 |
| CVE-2023-31999 | Fastify 跨站请求伪造漏洞 | 7.1 | - | 2023-07-04 |
All 2 known CVE vulnerabilities affecting @fastify/oauth2 with full Chinese analysis, references, and POCs where available.