Intermittent authentication failures with Oauth

User unable to authenticate due to token validation failure. Error in logs: "OAUTH: verify JWT: Could not find key for 'kid' in configuration, cannot verify...Read More ...

Continue Reading
Moderate: mod_auth_openidc:2.3 security update

The mod_auth_openidc is an OpenID Connect authentication module for Apache HTTP Server. It enables an Apache HTTP Server to operate as an OpenID Connect Relying Party and/or OAuth 2.0 Resource Server. ...

Continue Reading
mod_auth_openidc:2.3 security update

An update is available for mod_auth_openidc, module.cjose, cjose, module.mod_auth_openidc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a det ...

Continue Reading
mod_auth_openidc:2.3 security update

An update is available for mod_auth_openidc, module.cjose, cjose, module.mod_auth_openidc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a det ...

Continue Reading
mod_auth_openidc:2.3 security update

An update is available for mod_auth_openidc, module.cjose, cjose, module.mod_auth_openidc. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a det ...

Continue Reading
CVE-2025-1909

The BuddyBoss Platform Pro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.7.01. This is due to insufficient verification on the user being supplied dur ...

Continue Reading
(RHSA-2025:4597) Moderate: mod_auth_openidc:2.3 security update

The mod_auth_openidc is an OpenID Connect authentication module for Apache HTTP Server. It enables an Apache HTTP Server to operate as an OpenID Connect Relying Party and/or OAuth 2.0 Resource Server. ...

Continue Reading
CVE-2025-1909 BuddyBoss Platform Pro <= 2.7.01 – Authentication Bypass via Apple OAuth provider

The BuddyBoss Platform Pro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.7.01. This is due to insufficient verification on the user being supplied dur ...

Continue Reading

Back to Main

Subscribe for the latest news: