OpenAM OAuth2 integration
93%
Total Score
97
63
97
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-941486 openam-oauth2 is vulnerable to Server-Side Request Forgery (SSRF) in versions 0.0.1 - 16.1.1. | 0.0.1 - 16.1.1 | Medium |
CVE-2026-62280 org.openidentityplatform.openam:openam-oauth2 is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 13.0.0 - 16.1.1. | 13.0.0 - 16.1.1 | Medium |
CVE-2026-48717 org.openidentityplatform.openam:openam-oauth2 is vulnerable to Improper Authorization in versions 0.0.0 - 16.0.6. | 0.0.0 - 16.0.6 | Medium |
CVE-2026-47426 org.openidentityplatform.openam:openam-oauth2 is vulnerable to Improper Authentication in versions 0.0.0 - 16.0.6. | 0.0.0 - 16.0.6 | High |
CVE-2026-46498 org.openidentityplatform.openam:openam-oauth2 is vulnerable to Authorization Bypass Through User-Controlled Key in versions 0.0.0 - 16.1.1. | 0.0.0 - 16.1.1 | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
org.openidentityplatform.openam:openam-rest Version * | — | — |
org.openidentityplatform.openam:openam-core Version * | — | — |
org.openidentityplatform.openam:openam-scripting Version * | — | — |
org.openidentityplatform.openam:openam-i18n Version * | — | — |
org.openidentityplatform.commons.http-framework:core Version * | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant