CVE-2026-41213 | node-oauth oauth2-server up to 5.2.x code_verifier excessive authentication (GHSA-jhm7-29pj-4xvf / EUVD-2026-25272)
A vulnerability classified as problematic was found in node-oauth oauth2-server up to 5.2.x. This issue affects some unknown processing. Such manipulation of the argument code_verifier leads to improper restriction of excessive authentication attempts.
This vulnerability is listed as CVE-2026-41213. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.