onelogin-bug-let-attackers-use-api-keys-to-steal-oidc-secrets-and-impersonate-apps

“`html

An elevated-severity security vulnerability has been revealed in the One Identity OneLogin Identity and Access Management (IAM) system that, if successfully leveraged, could unveil confidential OpenID Connect (OIDC) application client secrets under specific conditions.

The flaw, identified as CVE-2025-59363, has received a CVSS rating of 7.7 out of 10.0. It has been characterized as a situation of

“`


Leave a Reply

Your email address will not be published. Required fields are marked *

Share This