Loading market data...
← Back to CVE feed

CVE-2026-37171

MEDIUM CVSS 5.9 View on NVD ↗

Description

A lack of tenant separation in SuperTokens Inc. SuperTokens Core v6.0.0 to v11.4.0 allows an authenticated party in one tenant to access sessions, data, and endpoints of another tenant.

CVSS Vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N
Published: Aug 07, 2026 14:16 UTC Modified: Aug 07, 2026 18:17 UTC