Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
npm/@auth0/nextjs-auth0 — 7 CVEs · VulnScope
pkg:npm/
@auth0/nextjs-auth0
7 total CVEs
HIGH
1
MEDIUM
3
LOW
1
✅ Check your installed version
Check
All known vulnerabilities
HIGH
8.0
CVE-2021-32702
Reflected XSS from the callback handler's error query parameter
from 0, < 1.4.2
MEDIUM
6.4
CVE-2021-43812
Open redirect in @auth0/nextjs-auth0
from 0, < 1.6.2
MEDIUM
5.4
CVE-2026-40155
Auth0 Next.js SDK has Improper Proxy Cache Lookup
>= 4.12.0, < 4.18.0
MEDIUM
5.4
Improper Request Caching Lookup in the Auth0 Next.js SDK
>= 4.11.0, < 4.11.2
LOW
3.7
Improper Validation of Query Parameters in Auth0 Next.js SDK
>= 4.9.0, < 4.13.0
—
NextJS-Auth0 SDK Vulnerable to CDN Caching of Session Cookies
>= 4.0.1, < 4.6.1
—
Auth0 NextJS SDK v4 Missing Session Invalidation
>= 4.0.1, < 4.5.1
CVE-2025-67490
CVE-2025-67716
CVE-2025-48947
CVE-2025-46344