UNKNOWNhex

Boruta dynamic client registration allows creation of over-privileged OAuth clients

Boruta dynamic client registration allows creation of over-privileged OAuth clients

CVE-2026-65635Published 1 month agoUpdated 1 week agoSource: OSV

Affected packages

  • boruta

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Boruta dynamic client registration allows creation of over-privileged OAuth clients | HackTribune