Skip to main content
Loading…
    CVE-2023-48228 — authentik is an open-source identity provider. When initialising a oauth2 flow with a `code_challenge` and `code_method` (thus requesting PKCE), the single sign-on provider (authentik) must check if t — CVE Database · The Intelligence Room