2025.10.1
1 years ago
10 days ago
Known vulnerabilities in the authentik-client package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
authentik-client is an authentik Affected versions of this package are vulnerable to Timing Attack due to the usage of a non-constant time comparison for the How to fix Timing Attack? Upgrade | [,2024.10.4.post1732236734) |
authentik-client is an authentik Affected versions of this package are vulnerable to Improper Authorization due to insufficient validation of the OAuth grants How to fix Improper Authorization? Upgrade | [,2024.10.4.post1732236734) |