Security: honojs/middleware
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
-
OAuth state and PKCE code verifier are generated with Math.random()GHSA-6833-cxmv-fqjf published
Aug 4, 2026 by yusukebeModerate -
OAuth state check fails open on omitted state in @hono/oauth-providers, enabling login CSRF and forced account linkingGHSA-fm3f-ch8h-qw8q published
Jul 16, 2026 by yusukebeModerate
Learn more about advisories related to honojs/middleware in the GitHub Advisory Database