All 2 CVE vulnerabilities found in ash_authentication, with AI-generated Chinese analysis, references, and POCs.
Vendor: team-alembic
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2025-32782 | Ash Authentication email link auto-click account confirmation vulnerability CWE-306 | 5.3 | Medium | 2025-04-15 |
| CVE-2025-25202 | Ash Authentication has flawed token revocation checking logic in actions generated by `mix ash_authentication.install` CWE-269 | 8.2 | - | 2025-02-11 |
All 2 known CVE vulnerabilities affecting ash_authentication with full Chinese analysis, references, and POCs where available.