VYPR

Middleware

by Honojs

CVEs (1)

  • CVE-2026-81888MedAug 31, 2026
    risk 0.28cvss 5.4epss

    @hono/oauth-providers is Authentication middleware for Hono. Prior to version 0.8.6, the built-in social login providers accept an OAuth callback even when the `state` value is absent on both sides, so the anti-CSRF check passes for a callback that never came from a genuine…