Vendor
Authorizer Zero-Click Account Takeover via OAuth Identity Linking
2 TTPsAuthorizer suffers from a zero-click account takeover vulnerability (CVE-2026-35511) where attackers can link OAuth identities to unverified accounts, gaining persistent password access to victim accounts.
Authorizer Unvalidated Redirect Vulnerability Allows OAuth2 Token Theft
1 rule 2 TTPs 1 IOCAn unvalidated redirect vulnerability, CVE-2026-54072, in the Authorizer `/authorize` endpoint allows an unauthenticated attacker to steal OAuth2 access, ID, and refresh tokens by crafting a malicious URL with an attacker-controlled `redirect_uri` to which the application redirects a logged-in user, exposing their tokens.
Authorizer Unvalidated Redirect URI Vulnerability
2 rules 1 TTP 1 IOCAuthorizer is vulnerable to unvalidated redirect URI injection in multiple endpoints, allowing attackers to steal password reset tokens, magic link tokens, and full authentication tokens by redirecting users to attacker-controlled sites.