← Back to CVE search

CVE-2026-37171

Description

A lack of tenant separation in SuperTokens Inc. SuperTokens Core v6.0.0 to v11.4.0 allows an authenticated party in one tenant to access sessions, data, and endpoints of another tenant.

CVSS 5.9EPSS 0.16%Risk 0.6
View source
Published
2026-08-07 14:16:59
Last modified
2026-08-07 18:17:13
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N