Junglewise Threat Intelligence

GO-2026-5737 - Authorizer: Password reset token theft and full auth token redirect via unvalidated redirect_uri in github.com/authorizerdev/authorizer

Severity: info · Published 2026-06-25

Technologies: github.com/authorizerdev/authorizer (Go). Vendors: Go.

Executive brief

Authorizer: Password reset token theft and full auth token redirect via unvalidated redirect_uri in github.com/authorizerdev/authorizer

Affected products

  • Go github.com/authorizerdev/authorizer

Related threats