CVE-2025-65430 - Allauth Django Authentication Token Validation Bypass
CVE ID : CVE-2025-65430
Published : 15 december 2025 14:15 | 1 uur, 31 minuten ago
Description : An issue was discovered in allauth-django before 65.13.0. IdP: marking a user as is_active=False after having handed tokens for that user while the account was still active had no effect. Fixed the access/refresh tokens are now rejected.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : 15 december 2025 14:15 | 1 uur, 31 minuten ago
Description : An issue was discovered in allauth-django before 65.13.0. IdP: marking a user as is_active=False after having handed tokens for that user while the account was still active had no effect. Fixed the access/refresh tokens are now rejected.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...