MEDIUM 6.3 NVD
CVE-2026-88819
In Siglet current and past versions the refresh token handler do not enforce proof of possession of the issuer DID.
In Siglet current and past versions the refresh token handler do not enforce proof of possession of the issuer DID.
References
This medium severity vulnerability with a CVSS score of 6.3 was published on 2026-09-14 via NVD.
vulnfeed aggregates 10822 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.