Safety vulnerability ID: 25909
The information on this page was manually curated by our Cybersecurity Intelligence Team.
oauthlib before 0.7.0 is not stripping client provided passwords from OAuth2 logs. https…
[This advisory has been limited. Please create a free account to view the full advisory.]
Latest version: 3.2.2
A generic, spec-compliant, thorough implementation of the OAuth request-signing logic
------------------ * (Change) OAuth2 clients will not raise a Warning on scope change if…
[This text has been limited. Please create a free account to view the full text.]
Create a free account to access detailed CVSS severity scores and full vulnerability advisories
Create free account