VYPR

scim

by Better Auth

CVEs (1)

  • CVE-2026-67330CriAug 1, 2026
    risk 0.00cvss 9.9epss 0.00

    @better-auth/scim (a better-auth plugin) versions >= 1.4.0-beta.27 through <= 1.6.21 and >= 1.7.0-beta.0 through <= 1.7.0-beta.9 contain an authorization bypass. SCIM token issuance did not reject provider IDs already used by existing SSO, SAML, OIDC, generic OAuth, or social…