Strapi through 4.5.5 does not verify the access or ID tokens issued during the OAuth flow when the AWS Cognito login provider is used for authentication. A remote attacker could forge an ID token that is signed using the 'None' type algorithm to bypass authentication and impersonate any user that use AWS Cognito for authentication.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-04-19T00:00:00
Updated: 2024-08-02T10:20:31.123Z
Reserved: 2023-01-10T00:00:00
Link: CVE-2023-22893
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-04-19T16:15:07.253
Modified: 2024-11-21T07:45:35.940
Link: CVE-2023-22893
Redhat
No data.