The Python OpenID Connect Project maintains a specialized authentication library for implementing OpenID Connect flows, where its vulnerability profile centers on cryptographic verification and protocol-handling issues such as improper signature validation and missing cryptographic steps. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Python Openid Connect Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-26244MEDIUM Python oic is a Python OpenID Connect implementation. In Python oic before version 1.2.1, there are several related cryptographic issues affecting client implementations that use t | Dec 2, 2020 | 6.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Python Openid Connect Project.
Media articles that mention a CVE ID that affects a product developed by Python Openid Connect Project — matched by CVE ID, not by vendor name.