cbcvebase.
CVE-2020-10187
published 2020-05-04

CVE-2020-10187: Doorkeeper version 5.0.0 and later contains an information disclosure vulnerability that allows an attacker to retrieve the client secret only intended for the…

PriorityP342high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
2.02%
78.8th percentile
Doorkeeper version 5.0.0 and later contains an information disclosure vulnerability that allows an attacker to retrieve the client secret only intended for the OAuth application owner. After authorizing the application and allowing access, the attacker simply needs to request the list of their authorized applications in a JSON format (usually GET /oauth/authorized_applications.json). An application is vulnerable if the authorized applications controller is enabled.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianruby-doorkeeper< ruby-doorkeeper 5.0.3-1 (bookworm)ruby-doorkeeper 5.0.3-1 (bookworm)
doorkeeper_projectdoorkeeper>= 5.0.0 < 5.0.35.0.3
doorkeeper_projectdoorkeeper>= 5.0.0 < 5.0.35.0.3
doorkeeper_projectdoorkeeper>= 5.1.0 < 5.1.15.1.1
doorkeeper_projectdoorkeeper>= 5.1.0 < 5.1.15.1.1
doorkeeper_projectdoorkeeper>= 5.2.0 < 5.2.55.2.5
doorkeeper_projectdoorkeeper>= 5.2.0 < 5.2.55.2.5
doorkeeper_projectdoorkeeper>= 5.3.0 < 5.3.25.3.2
doorkeeper_projectdoorkeeper>= 5.3.0 < 5.3.25.3.2

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
ghsa7.5HIGH
osv7.5HIGH
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.