Known Vulnerabilities for Auth0 by Vendor
Listed below are 5 of the newest known vulnerabilities associated with "Auth0" by "Vendor".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-85983 json | The Auth0 AD/LDAP Connector improperly processes a configuration value during service startup. This allows a low-privileged u... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-85982 json | The Auth0 AD/LDAP Connector is vulnerable to stored Cross-Site Scripting (XSS) issues due to improper HTML encoding of data i... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-85981 json | The administrative panel of the Auth0 AD/LDAP Connector (versions 6.5.0 and earlier) listens on the local loopback interface ... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-84685 json | The react-native-auth0 SDK's web platform implementation does not scope its in-memory token cache to individual user sessions... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-56270 json | Flowise before 3.1.0 (versions 3.0.13 and earlier) contains a missing authentication vulnerability in the /api/v1/loginmethod... | Not Provided | 2026-06-24 | 2026-06-24 |