Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 versions via specially crafted requests.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Ping Identity

Published: 2024-02-06T17:27:42.361Z

Updated: 2024-08-22T16:53:12.079Z

Reserved: 2023-08-25T16:59:38.674Z

Link: CVE-2023-40545

cve-icon Vulnrichment

Updated: 2024-08-02T18:38:50.649Z

cve-icon NVD

Status : Analyzed

Published: 2024-02-06T18:15:58.470

Modified: 2024-02-13T21:08:23.400

Link: CVE-2023-40545

cve-icon Redhat

No data.