CVE-2026-54430 | OpenIDC liboauth2 up to 2.2.x oauth2_jose_jwks_aws_alb_resolve server-side request forgery (EUVD-2026-41276)
A vulnerability marked as critical has been reported in OpenIDC liboauth2 up to 2.2.x. Affected by this issue is the function oauth2_jose_jwks_aws_alb_resolve. The manipulation leads to server-side request forgery.
This vulnerability is uniquely identified as CVE-2026-54430. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More