Logto bypasses OIDC nonce validation when the nonce claim is absent from the id_token, enabling replay of authentication tokens and weakening session-binding.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Logto bypasses OIDC nonce validation when the nonce claim is absent from the id_token, enabling replay of authentication tokens and weakening session-binding.
How easy to exploit
Severity of consequences
Likelihood of exploitation in next 30 days