Skip to content

Signal K Server: OAuth Authorization Code Theft via Unvalidated Host Header in OIDC Flow

Moderate severity GitHub Reviewed Published Apr 1, 2026 in SignalK/signalk-server • Updated Apr 3, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts