VYPR

Maven package

com.xwiki.identity-oauth/identity-oauth-ui

pkg:maven/com.xwiki.identity-oauth/identity-oauth-ui

Vulnerabilities (1)

  • CVE-2023-45144Oct 16, 2023
    affected >= 1.0, < 1.6fixed 1.6

    com.xwiki.identity-oauth:identity-oauth-ui is a package to aid in building identity and service providers based on OAuth authorizations. When a user logs in via the OAuth method, the identityOAuth parameters sent in the GET request is vulnerable to cross site scripting (XSS) and