Security Advisory

CVE-2026-16206

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-19 02:15:08
Last updated 2026-07-20 13:58:32
Assigner VulDB
CVSS score 5.3
State PUBLISHED

Description

A security vulnerability has been detected in django-oauth django-oauth-toolkit 3.3.0. This issue affects the function _load_id_token of the file oauth2_provider/oauth2_validators.py. The manipulation leads to session expiration. The attack can be initiated remotely. The project was informed of the problem early through an issue report but has not responded yet.