A lack of tenant separation in SuperTokens Inc. SuperTokens Core v6.0.0 to v11.4.0 allows an authenticated party in one tenant to access sessions, data, and endpoints of another tenant.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-07 14:16
Updated : 2026-09-09 17:17
NVD link : CVE-2026-37171
Mitre link : CVE-2026-37171
CVE.ORG link : CVE-2026-37171
JSON object : View
Products Affected
No product.
CWE
CWE-863
Incorrect Authorization
