Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 versions via specially crafted requests.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Ping Identity
Published: 2024-02-06T17:27:42.361Z
Updated: 2024-08-22T16:53:12.079Z
Reserved: 2023-08-25T16:59:38.674Z
Link: CVE-2023-40545
Vulnrichment
Updated: 2024-08-02T18:38:50.649Z
NVD
Status : Modified
Published: 2024-02-06T18:15:58.470
Modified: 2024-11-21T08:19:41.303
Link: CVE-2023-40545
Redhat
No data.