๐Ÿ” CVE Alert

CVE-2026-9094

CRITICAL 9.8

CVE-2026-9094

CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
4th

Casdoor versions 2.362.0 and earlier contain a vulnerability enabling cross-organization token exchange. The GetTokenExchangeToken function in object/token_oauth.go validates JWT signatures but does not verify that the token's user belongs to the same organization as the target application. This can result in privilege escalation across organizational boundaries.

Vendor casdoor
Product casdoor
Published May 28, 2026
Last Updated Jun 2, 2026
Stay Ahead of the Next One

Get instant alerts for casdoor casdoor

Be the first to know when new critical vulnerabilities affecting casdoor casdoor are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Casdoor / Casdoor
0 โ‰ค 2.362.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
kb.cert.org: https://kb.cert.org/vuls/id/780781