Vulnerabilities (CVE)

Filtered by vendor Alembic
Filtered by product Ash Authentication
Angry Yack Logo
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-25202 1 Alembic 1 Ash Authentication 2025-08-27 N/A 6.5 MEDIUM
Ash Authentication is an authentication framework for Elixir applications. Applications which have been bootstrapped by the igniter installer present since AshAuthentication v4.1.0 and who have used the magic link strategy _or_ are manually revoking tokens are affected by revoked tokens being allowed to verify as valid. Unless one hase implemented any kind of custom token revocation feature in your application, then one will not be affected. The impact here for users using builtin functionality ...

Show More