2024.12.1.post1734988465
9 months ago
2 days ago
Known vulnerabilities in the authentik-client package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
authentik-client is an authentik Affected versions of this package are vulnerable to Timing Attack due to the usage of a non-constant time comparison for the How to fix Timing Attack? Upgrade | [,2024.10.4.post1732236734) |
authentik-client is an authentik Affected versions of this package are vulnerable to Incorrect Regular Expression due to the insecure handling of How to fix Incorrect Regular Expression? Upgrade | [,2024.10.4.post1732236734) |
authentik-client is an authentik Affected versions of this package are vulnerable to Improper Authorization due to insufficient validation of the OAuth grants How to fix Improper Authorization? Upgrade | [,2024.10.4.post1732236734) |