VYPR

apk package

chainguard/py3-oauthenticator

pkg:apk/chainguard/py3-oauthenticator

Vulnerabilities (2)

  • CVE-2024-37300HigJun 12, 2024
    affected < 16.3.1-r0fixed 16.3.1-r0

    OAuthenticator is software that allows OAuth2 identity providers to be plugged in and used with JupyterHub. JupyterHub < 5.0, when used with `GlobusOAuthenticator`, could be configured to allow all users from a particular institution only. This worked fine prior to JupyterHub 5.0

  • CVE-2024-29033Mar 20, 2024
    affected < 16.3.0-r0fixed 16.3.0-r0

    OAuthenticator provides plugins for JupyterHub to use common OAuth providers, as well as base classes for writing one's own Authenticators with any OAuth 2.0 provider. `GoogleOAuthenticator.hosted_domain` is used to restrict what Google accounts can be authorized access to a Jupy