[]() A security shortcoming in Microsoft Azure Active Dir ...
Continue ReadingJune 21, 2023
doorkeeper is vulnerable to Improper Authentication. The vulnerability exists because user authentication is automatically processed without consent of the user if the authentication token matches, wh ...
Continue ReadingJune 21, 2023
OAuth RFC 8252 says https://www.rfc-editor.org/rfc/rfc8252#section-8.6 > the authorization server SHOULD NOT process authorization requests > automatically without user consent or interaction, ...
Continue ReadingJune 16, 2023
Welcome to our May API newsletter, recapping some of the events of last month. As the old proverb goes, _April showers bring May flowers_ â and this means the bees at the Wallarm hive have been i ...
Continue ReadingJune 15, 2023
Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape. Prior to version 5.6.6, Doorkeeper automatically processes authorization requests without user consent for public clients that have been pr ...
Continue ReadingJune 13, 2023
Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape. Prior to ...Read More ...
Continue ReadingJune 12, 2023
OAuth RFC 8252 says https://www.rfc-editor.org/rfc/rfc8252#section-8.6 > the authorization server SHOULD NOT process authorization requests automatically without user consent or interaction, excep ...
Continue ReadingJune 12, 2023
OAuth RFC 8252 says https://www.rfc-editor.org/rfc/rfc8252#section-8.6 > the authorization server SHOULD NOT process authorization requests automatically without user consent or interaction, excep ...
Continue ReadingJune 12, 2023
Back to Main