fastapi-users_project CVE 脆弱性と CVE 一覧(1)

製品(CPE): — CVE 件数: 1

fastapi-users_project 脆弱性概要

This page aggregates publicly disclosed CVE and security risk information related to fastapi-users_project, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

脆弱性分布の推移(直近24か月)

表示中 11 / 1 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2025-68481 FastAPI Users allows users to quickly add a registration and authentication system to their FastAPI project. Prior to version 15.0.2, the OAuth login state tokens are completely stateless and carry no per-request entropy or any data that could link them to the session that initiated the OAuth flow. `generate_state_token()` is always called with an empty `state_data` dict, so the resulting JWT only contains the fixed audience claim plus an expiration timestamp. On callback, the library merely che [email protected] 5.9 0.22% 2025-12-19 2026-03-05
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence