No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-wcgj-f865-c7j7 | Improper Request Caching Lookup in the Auth0 Next.js SDK |
Fri, 06 Mar 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:auth0:nextjs-auth0:4.11.0:*:*:*:*:node.js:*:* cpe:2.3:a:auth0:nextjs-auth0:4.11.1:*:*:*:*:node.js:*:* cpe:2.3:a:auth0:nextjs-auth0:4.12.0:*:*:*:*:node.js:*:* |
Thu, 11 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 11 Dec 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Auth0
Auth0 nextjs-auth0 |
|
| Vendors & Products |
Auth0
Auth0 nextjs-auth0 |
Wed, 10 Dec 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1. | |
| Title | Auth0 Next.js SDK has Improper Request Caching Lookup | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-12-11T15:38:34.314Z
Reserved: 2025-12-08T18:49:47.486Z
Link: CVE-2025-67490
Updated: 2025-12-11T15:38:29.915Z
Status : Analyzed
Published: 2025-12-10T23:15:48.503
Modified: 2026-03-06T19:39:30.930
Link: CVE-2025-67490
No data.
OpenCVE Enrichment
Updated: 2025-12-11T15:16:56Z
Github GHSA