VDB
KO

package

PyPI / authlib

pkg:pypi/authlib

MEDIUM 5.4 PyPI
GHSA-w8p2-r796-3vmq · CVE-2026-41479

Authlib OAuth 2.0 has Open Redirect in Authorization API that allows attacker-controlled redirect_uri through unsupported response_type

Modified: 6/8/2026