CNNVD-202508-816 Information

CNNVD ID

CNNVD-202508-816

CVE-2025-55009

  • CNNVD Published: 2025-08-09

Description (Chinese)

AuthKit Remix Library是WorkOS开源的一个用于身份验证和会话管理的库。 AuthKit Remix Library 0.14.1及之前版本存在信息泄露漏洞,该漏洞源于暴露了敏感认证工件,可能导致信息泄露。

Description (English)

AuthKit Remix Library is a library for authentication and session management at the Open Source of WorkOS. There is a leak in AuthKit Remix Library 0.14.1 and earlier versions, which stems from the exposure of sensitive authentication works, which may lead to the disclosure of information.

Hazard Level

Medium

Vulnerability Type

信息泄露

Affected Vendor

WorkOS

Published

2025-08-09

Last Modified

2026-02-24

References

https://github.com/workos/authkit-remix/releases/tag/v0.15.0 https://github.com/workos/authkit-remix/security/advisories/GHSA-v3gr-w9gf-23cx https://github.com/workos/authkit-remix/commit/20102afc74bf3dd5150a975a098067fb406b90b6 https://access.redhat.com/security/cve/cve-2025-55009

Patch

https://github.com/workos/authkit-remix/releases

Share on: