Vulnerabilities/

Parse Server has an OAuth login vulnerability

Severity:
Medium

Description

The 3rd party authentication handling of Parse Server allows the authentication credentials of some specific authentication providers to be used across multiple Parse Server apps.

Recommendation

Update the parse-server package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
parse-server
Anything's wrong? Let us know Last updated on March 21, 2025

This issue is available in SmartScanner Professional

See Pricing