Junglewise Threat Intelligence

GO-2022-0406 - Possible bypass of token claim validation when OAuth2 Introspection caching is enabled in github.com/ory/oathkeeper

Severity: info · Published 2024-08-21

Technologies: github.com/ory/oathkeeper (Go). Vendors: Go.

Executive brief

Possible bypass of token claim validation when OAuth2 Introspection caching is enabled in github.com/ory/oathkeeper

Affected products

  • Go github.com/ory/oathkeeper

Related threats