#token-validation

[ follow ]
Information security
fromTheregister
3 days ago

Entra ID bug could have granted access to every tenant

Flawed token validation in Azure AD allowed cross-tenant Actor tokens to grant full Entra ID administrative access across tenants.
[ Load more ]