CVE-2026-19363 | lmammino oidc-authorizer up to 0.4.0 Fixed Message src/handler.rs unwrap jwtClaims deserialization

SecurityVulns

A vulnerability was found in lmammino oidc-authorizer up to 0.4.0 and classified as problematic. Impacted is the function unwrap of the file src/handler.rs of the component Fixed Message Handler. The manipulation of the argument jwtClaims results in deserialization.

This vulnerability is identified as CVE-2026-19363. The attack can be executed remotely. Additionally, an exploit exists.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More