Roadiz sub-package for handling OpenID authentication
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-42206 roadiz/openid is vulnerable to Insufficient Verification of Data Authenticity in versions 2.7.0 - 2.7.18, 2.6.0 - 2.6.31, 2.5.0 - 2.5.45 and 0.0.0 - 2.3.43. | 0.0.0 - 2.3.432.5.0 - 2.5.452.6.0 - 2.6.31 +1 more | Medium |
| Dependency | Last Release | Score |
|---|---|---|
psr/cache Version >=1.0.1 | — | — |
roadiz/jwt Version 2.7.* | — | — |
lcobucci/jwt Version ^5.3 | — | — |
roadiz/models Version 2.7.* | — | — |
roadiz/random Version 2.7.* | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant