Package impact
PyPI / authlib
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-44681 | medium | 6.1 | 6.1 | 21h ago | Authlib OIDC Implicit/Hybrid Authorization Vulnerable to Open Redirect | |
| CVE-2026-41425 | medium | 5.4 | 5.4 | 1mo ago | Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to 1.6.11, there is no CSRF protection on the cache feature in authlib.integrations.starlette_client.OAuth. This vuln… |