Ash-Project Ash Authentication Oauth2 Server

6 known vulnerabilities in Ash-Project Ash Authentication Oauth2 Server, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-82758 CVSS 6.3 medium Improper Authentication vulnerability in ash-project ash_authentication_oauth2_server allows an unauthenticated attacker to register OAuth…
  • CVE-2026-82757 CVSS 6.3 medium Server-Side Request Forgery (SSRF) vulnerability in ash-project ash_authentication_oauth2_server allows an attacker who controls a client…
  • CVE-2026-82756 CVSS 6.3 medium Improper Encoding or Escaping of Output vulnerability in ash-project ash_authentication_oauth2_server allows an unauthenticated attacker…
  • CVE-2026-82755 CVSS 6.3 medium Use of Cache Containing Sensitive Information vulnerability in ash-project ash_authentication_oauth2_server allows a shared HTTP cache to…
  • CVE-2026-82754 CVSS 6.3 medium Improper Protection of Alternate Path vulnerability in ash-project ash_authentication_oauth2_server exposes the state-changing OAuth…
  • CVE-2026-82753 CVSS 8.2 high Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_authentication_oauth2_server allows an…