FIDO2 .NET library (WebAuthn)
88%
Total Score
healthy
Healthy—active maintenance and a current security-focused release support this version.
No build or security-scanning tools were detected in the repository. This is a modest transparency and hygiene gap, partly offset by the repository's active maintenance and security policy.
Both workflows were fully analyzed with no untrusted checkouts or script injection; 13 of 14 action references are pinned. The high-confidence informational use-trusted-publishing finding warrants a small workflow-hygiene caution.
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-428599 New Fido2 is vulnerable to Authentication Bypass by Capture-replay in versions 0.0.1 - 4.0.1. | 0.0.1 - 4.0.1 | Low |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
fido2.models Version [4.2.0, ) | — | — |
microsoft.extensions.http Version [9.0.0, ) | — | — |
microsoft.identitymodel.jsonwebtokens Version [8.2.0, ) | — | — |
nsec.cryptography Version [25.4.0, ) | — | — |
system.formats.cbor Version [9.0.0, ) | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.