Vulnerabilities (CVE)

Filtered by vendor Auth0 Subscribe
Filtered by product Auth0.js
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-6873 1 Auth0 1 Auth0.js 2019-10-03 7.5 HIGH 9.8 CRITICAL
The Auth0 authentication service before 2017-10-15 allows privilege escalation because the JWT audience is not validated.