VYPR

@backstage/plugin-auth-backend-module-cloudflare-access-provider

by Backstage

CVEs (1)

  • CVE-2026-106457MedOct 6, 2026
    risk 0.37cvss 6.8epss —

    Backstage is an open framework for building developer portals. From 0.1.0 until 0.5.0, the @backstage/plugin-auth-backend-module-cloudflare-access-provider package is affected by insufficient audience validation in the cloudflare access auth provider. The Cloudflare Access auth…