Skip to content
CodeAuditAgent

CVE-2026-58425

OAuth token introspection returns metadata of tokens issued to other clients (RFC 7662 section 4 violation)

Weakness

OAuth token introspection returns metadata of tokens issued to other clients (RFC 7662 section 4 violation)

References

Find the bug before an attacker does.

Sign in with GitHub and run your first audit in under a minute. The free plan needs no credit card.