shield
Security update for python-authlib
SUSE-SLE-Module-Python3-15-SP7-2026-2968
This update for python-Authlib fixes the following issues - CVE-2026-41425: Prior to 1.6.11, there is no CSRF protection on the cache feature in authlib.integrations.starlette_client.OAuth (bsc#1263114). - CVE-2026-44681: Prior to 1.6.12 and 1.7.1, an unauthenticated open redirect in Authlib's OpenIDImplicitGrant and OpenIDHybridGrant authorization endpoint exists (bsc#1266665).
-
Release DateJul 14 2026
-
References
-
Typesecurity
-
Severitymoderate
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
Python 3 Module 15.7 ppc64le
-
Packagespython-Authlib
Python library for building OAuth and OpenID Connect serverspython311-Authlib1.3.1-150600.3.22.1 lock src
Python library for building OAuth and OpenID Connect servers1.3.1-150600.3.22.1 lock rpm
Python 3 Module 15.7 aarch64
-
Packagespython-Authlib
Python library for building OAuth and OpenID Connect serverspython311-Authlib1.3.1-150600.3.22.1 lock src
Python library for building OAuth and OpenID Connect servers1.3.1-150600.3.22.1 lock rpm
Python 3 Module 15.7 x86_64
-
Packagespython-Authlib
Python library for building OAuth and OpenID Connect serverspython311-Authlib1.3.1-150600.3.22.1 lock src
Python library for building OAuth and OpenID Connect servers1.3.1-150600.3.22.1 lock rpm