Site icon API Security Blog

Doorkeeper vulnerability

## Releases

* Ubuntu 23.04
* Ubuntu 22.10
* Ubuntu 22.04 LTS
* Ubuntu 20.04 LTS
* Ubuntu 18.04 ESM
* Ubuntu 16.04 ESM

## Packages

* ruby-doorkeeper – OAuth 2 provider for Rails and Grape

It was discovered that Doorkeeper incorrectly performed authorization checks
for public clients that have been previous approved. An attacker could
potentially exploit these in order to impersonate another user and obtain
sensitive information.Read More

Exit mobile version