CVE-2026-73683: Laravel Socialite Facebook Login Bypass by Stolen Token (stackflag.com)

Attackers can use a stolen Facebook login token to access accounts without a password.

CVE-2026-73683 - socialite Attackers can use a stolen Facebook login token to access accounts without a password. This happens because Laravel Socialite doesn't check if the token has been used before. To… Too many irrelevant or confusing CVEs? Use stackflag.com

0 comments — live from bluesky

No comments yet.