📦 Scratchoauth2

by Scratchoauth2 Project

🔍 What is Scratchoauth2?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-46250

CRITICAL CVSS 10.0 Feb 15, 2022

This vulnerability in ScratchOAuth2 allows attackers to authenticate as other users by exploiting an issue in the SOA2Login::commented function. It affects downstream components that rely on ScratchOA...

CVE-2021-29437

HIGH CVSS 8.0 Apr 13, 2021

This vulnerability allows third-party websites to trick Scratch users into revealing OAuth2 login codes, enabling attackers to impersonate users and gain full access to their Scratch accounts. It affe...