Known vulnerabilities in mod_auth_openidc 2.4.20
Vendor:
ZmartZone IAM
Software:
mod_auth_openidc
Version:
2.4.20
Software CPE:
cpe:2.3:a:zmartzone:mod_auth_openidc:*:*:*:*:*:*:*:*
Website:
https://github.com/zmartzone/
Total vulnerabilities:
8
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Vulnerabilities by Severity
2.4.20.3
2.4.20.2
2.4.20.1
2.4.20
2.4.19.4
2.4.19.3
2.4.19.2
2.4.19.1
2.4.19
2.4.18.1
2.4.18
2.4.17.2
2.4.17.1
2.4.17
2.4.16.11
2.4.16.10
2.4.16.9
2.4.16.8
2.4.16.7
2.4.16.6
2.4.16.5
2.4.16.4
2.4.16.3
2.4.16.2
2.4.16.1
2.4.16
2.4.15.7
2.4.15.6
2.4.15.5
2.4.15.4
2.4.15.3
2.4.15.2
2.4.15.1
2.4.15
2.4.14.4
2.4.14.3
2.4.14.2
2.4.14.1
2.4.14
2.4.13.2
2.4.13.1
2.4.13
2.4.12.3
2.4.12.2
2.4.12.1
2.4.12
2.4.11.3
2.4.11.2
2.4.11.1
2.4.11
2.4.10
2.4.9.4
2.4.9.3
2.4.9.2
2.4.9.1
2.4.9
2.4.8.4
2.4.8.3
2.4.8.2
2.4.8.1
2.4.7.2
2.4.7.1
2.4.7
2.4.6
2.4.5
2.4.4.1
2.4.4
2.4.3
2.4.2.1
2.4.2
2.4.1
2.4.0.4
2.4.0.3
2.4.0.2
2.4.0.1
2.4.0
2.3.11
2.3.10.2
2.3.10.1
2.3.10
2.3.9
2.3.8
2.3.7
2.3.6
2.3.5
2.3.4
2.3.3
2.3.2
2.3.1
2.3.0
2.2.0
2.1.6
2.1.5
2.1.4
2.1.3
2.1.2
2.1.1
2.1.0
2.0.0
1.8.10.3
1.8.10.2
1.8.10.1
1.8.10
1.8.9
1.8.8
1.8.7
1.8.6
1.8.5
1.8.4
1.8.3
1.8.2
1.8.1
1.8.0
1.7.3
1.7.2
1.7.1
1.7.0
1.6.0
1.5.5
1.5.4
1.5.3
1.5.2
1.5.1
1.5
Vulnerabilities (8)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU142420 - Improper input validation |
CWE-20 | High | 2.4.20.1 | 13.08.2026 |
SB2026081391 |
||
| #VU142421 - Session Fixation |
CWE-384 | Medium | 2.4.20.1 | 13.08.2026 |
SB2026081391 |
||
| #VU142422 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
CWE-79 | Medium | 2.4.20.1 | 13.08.2026 |
SB2026081391 |
||
| #VU142423 - Cross-Site Request Forgery (CSRF) |
CWE-352 | Low | 2.4.20.1 | 13.08.2026 |
SB2026081391 |
||
| #VU142424 - Improper input validation |
CWE-20 | Low | 2.4.20.1 | 13.08.2026 |
SB2026081391 |
||
| #VU142425 - Improper Access Control |
CWE-284 | Medium | 2.4.20.1 | 13.08.2026 |
SB2026081391 |
||
| #VU142426 - Authentication Bypass by Capture-replay |
CWE-294 | Medium | 2.4.20.1 | 13.08.2026 |
SB2026081391 |
||
| #VU142427 - Information Exposure Through Log Files |
CWE-532 | Low | 2.4.20.1 | 13.08.2026 |
SB2026081391 |