Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Oauth2 Proxy CRITICAL 9.1
CVE-2026-40575

OAuth2 Proxy is a reverse proxy that provides authentication using OAuth2 providers. Versions 7.5.0 through 7.15.1 may trust a client-supplied `X-For…

Fix: 7.15.2+
Fix from $2,300 2026-04-22
Oauth2 Proxy HIGH 8.2
CVE-2026-41059

OAuth2 Proxy is a reverse proxy that provides authentication using OAuth2 providers. Versions 7.5.0 through 7.15.1 have a configuration-dependent aut…

Fix: 7.15.2+
Fix from $1,950 2026-04-22
Oauth2 Proxy MEDIUM 6.8
CVE-2026-40574

OAuth2 Proxy is a reverse proxy that provides authentication using OAuth2 providers. Prior to 7.15.2, an authorization bypass exists in OAuth2 Proxy …

Fix: 7.15.2+
Fix from $1,600 2026-04-21
Oauth2 Proxy CRITICAL 9.1
CVE-2026-34457

OAuth2 Proxy is a reverse proxy that provides authentication using OAuth2 providers. Versions prior to 7.15.2 contain a configuration-dependent authe…

Fix: 7.15.2+
Fix from $2,300 2026-04-14
Oauth2 Proxy CRITICAL 9.1
CVE-2025-54576

OAuth2-Proxy is an open-source tool that can act as either a standalone reverse proxy or a middleware component integrated into existing reverse prox…

Fix: 7.11.0+
Fix from $2,300 2025-07-30
Oauth2 Proxy MEDIUM 5.5
CVE-2021-21411

OAuth2-Proxy is an open source reverse proxy that provides authentication with Google, Github or other providers. The `--gitlab-group` flag for group…

Fix: 7.1.0+
Fix from $1,600 2021-03-26
Oauth2 Proxy MEDIUM 6.1
CVE-2021-21291

OAuth2 Proxy is an open-source reverse proxy and static file server that provides authentication using Providers (Google, GitHub, and others) to vali…

Fix: 7.0.0+
Fix from $1,600 2021-02-02
Oauth2 Proxy MEDIUM 5.4
CVE-2020-4037

In OAuth2 Proxy from version 5.1.1 and less than version 6.0.0, users can provide a redirect address for the proxy to send the authenticated user to …

Fix: 6.0.0+
Fix from $1,600 2020-06-29
Oauth2 Proxy MEDIUM 6.1
CVE-2020-11053

In OAuth2 Proxy before 5.1.1, there is an open redirect vulnerability. Users can provide a redirect address for the proxy to send the authenticated u…

Fix: 5.1.1+
Fix from $1,600 2020-05-07
Oauth2 Proxy MEDIUM 6.1
CVE-2020-5233

OAuth2 Proxy before 5.0 has an open redirect vulnerability. Authentication tokens could be silently harvested by an attacker. This has been patched i…

Fix: 5.0.0+
Fix from $1,600 2020-01-30
Oauth2 Proxy HIGH 8.8
CVE-2017-1000069

CSRF in Bitly oauth2_proxy 2.1 during authentication flow

Patch available
Fix from $1,950 2017-07-17
Oauth2 Proxy MEDIUM 6.1
CVE-2017-1000070

The Bitly oauth2_proxy in version 2.1 and earlier was affected by an open redirect vulnerability during the start and termination of the 2-legged OAu…

Fix: after 2.1
Fix from $1,600 2017-07-17