Known Vulnerabilities for Oauth2-server by Thephpleague
Listed below are 1 of the newest known vulnerabilities associated with "Oauth2-server" by "Thephpleague".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-48146 json | Budibase is an open-source low-code platform. Prior to 3.39.0, the OAuth2 token fetch function in packages/server/src/sdk/wor... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-43875 json | WWBN AVideo is an open source video platform. In versions up to and including 29.0, plugin/MobileManager/oauth2.php completes... | Not Provided | 2026-05-11 | 2026-05-12 |
| CVE-2026-41213 json | @node-oauth/oauth2-server is a module for implementing an OAuth2 server in Node.js. The token exchange path accepts RFC7636-i... | Not Provided | 2026-04-23 | 2026-04-25 |
| CVE-2026-41070 json | openvpn-auth-oauth2 is a plugin/management interface client for OpenVPN server to handle an OIDC based single sign-on (SSO) a... | Not Provided | 2026-05-08 | 2026-05-08 |
| CVE-2026-39976 json | Laravel Passport provides OAuth2 server support to Laravel. From 13.0.0 to before 13.7.1, there is an Authentication Bypass f... | Not Provided | 2026-04-09 | 2026-04-09 |
| CVE-2026-34083 json | Signal K Server is a server application that runs on a central hub in a boat. Prior to version 2.24.0, SignalK Server contain... | Not Provided | 2026-04-02 | 2026-04-02 |
| CVE-2026-7820 json | Improper restriction of excessive authentication attempts (CWE-307) in pgAdmin 4. pgAdmin enforces MAX_LOGIN_ATTEMPTS only i... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2023-37260 json | league/oauth2-server is an implementation of an OAuth 2.0 authorization server written in PHP. Starting in version 8.3.2 and ... | 7.5 - HIGH | 2023-07-06 | 2023-07-13 |