Signal K Server: OAuth Authorization Code Theft via Unvalidated Host Header in OIDC Flow
Moderate severity
GitHub Reviewed
Published
Apr 1, 2026
in
SignalK/signalk-server
•
Updated Apr 3, 2026
Give feedback on Dependabot alerts