CVE-2025-67490 - CERT CVE
ID CVE-2025-67490
Sažetak The Auth0 Next.js SDK is a library for implementing user authentication in Next.js applications. When using versions 4.11.0 through 4.11.2 and 4.12.0, simultaneous requests on the same client may result in improper lookups in the TokenRequestCache for the request results. This issue is fixed in versions 4.11.2 and 4.12.1.
Reference
CVSS
Base: 5.4
Impact: 4.2
Exploitability:1.2
Pristup
VektorSloženostAutentikacija
NETWORK HIGH LOW
Impact
PovjerljivostCjelovitostDostupnost
HIGH LOW NONE
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:N
Zadnje važnije ažuriranje 10-12-2025 - 23:15
Objavljeno 10-12-2025 - 23:15