Authentication Bypass in Auth0 Passport-SharePoint by Auth0
CVE-2019-13483
7.3HIGH
What is CVE-2019-13483?
Auth0 Passport-SharePoint versions prior to 0.4.0 are susceptible to an authentication bypass vulnerability due to insufficient validation of JSON Web Token (JWT) signatures. Attackers can exploit this flaw by forging access tokens, allowing unauthorized access to protected resources, thus compromising the security of applications reliant on this product for authentication and authorization.
