Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Security Intel Hub 16+

Curated security advisories, vulnerability analyses, and exploit write-ups — auto-cleaned and translated to English. Updated continuously.

Examples: RCE · SSRF · GHSA · log4j
Filter
Clear filters
Premium intel
Low
Auth.js Configuration Error Allows Auth Bypass via Existence Check (CVE-2025-73421)
CVE-2025-73421 · github.com · 2026-08-14
next-auth >= 5.0.0-beta.0, <= 5.0.0-beta.31
Read more
Premium intel
Critical
next-auth Authentication Bypass via Invalid Provider Configuration
github.com · 2026-08-14
next-auth@5.0.0-beta.32
Read more
Premium intel
High
next-auth Email Validation Bypass via Unicode Normalization of '@' Character
GHSA-7rjy-365f-6b4c · github.com · 2026-08-14
next-auth
Read more
Premium intel
Critical
Next.js Auth Homoglyph @ Bypass Leading to Account Takeover (CWE-180)
github.com · 2026-08-14
@auth/core >= 0.1.0, < 0.41.3 · next-auth >= 4.10.3, < 4.24.15 …
Read more
Premium intel
Medium
CVE-2024-73418: Unhandled Exception in getToken() causes DoS in Next-Auth
CVE-2024-73418 · github.com · 2026-08-13
@auth/core>= 0.1.0, < 0.41.3 · next-auth >= 5.0.0-beta.0, <= 5.0.0-beta.31 …
Read more
High
NextAuth.js OAuth State Cookie Mismatch Vulnerability (CVE-2025-73419)
CVE-2025-73419 · github.com · 2026-08-13
@auth/core <= 0.41.2 · next-auth >= 5.0.0-beta.1 <= 5.0.0-beta.31 …
Read more
Premium intel
High
next-auth 5.0.0-beta.32 Security Patch: Fixes Bearer Token and OAuth Validation Vulnerabilities
github.com · 2026-08-13
next-auth < 5.0.0-beta.32 · @auth/core < 0.41.3
Read more

All articles are auto-cleaned (markdown extraction + LLM noise removal) and translated to English by our offline pipeline. Source URL is always preserved at the bottom of each article.

Want a specific source covered? Email us — we add new feeds weekly.