From 06b993c813e03382b7b8f3fb19b6182b7eb9acdf47b724a0284c58e3e28f0973 Mon Sep 17 00:00:00 2001 From: Robert Frohl Date: Thu, 19 Feb 2026 10:10:45 +0100 Subject: [PATCH] Update submodules from pool/python-Authlib#1 and create patchinfo.20260219090959320014.93181000773252/_patchinfo --- .../_patchinfo | 15 +++++++++++++++ python-Authlib | 2 +- 2 files changed, 16 insertions(+), 1 deletion(-) create mode 100644 patchinfo.20260219090959320014.93181000773252/_patchinfo diff --git a/patchinfo.20260219090959320014.93181000773252/_patchinfo b/patchinfo.20260219090959320014.93181000773252/_patchinfo new file mode 100644 index 0000000..fb2bc39 --- /dev/null +++ b/patchinfo.20260219090959320014.93181000773252/_patchinfo @@ -0,0 +1,15 @@ + + VUL-0: CVE-2025-68158: python-Authlib: 1-click account takeover in applications that use the Authlib library + VUL-0: CVE-2025-68158: python-Authlib: 1-click account takeover in applications that use the Authlib library + nkrapp + moderate + security + Security update for python-Authlib + This update for python-Authlib fixes the following issues: + +Changes in python-Authlib: + +- CVE-2025-68158: Fixed 1-click account takeover in applications that use the Authlib library (bsc#1256414) + + python-Authlib + diff --git a/python-Authlib b/python-Authlib index 5ab3f7e..1401c75 160000 --- a/python-Authlib +++ b/python-Authlib @@ -1 +1 @@ -Subproject commit 5ab3f7e0347c8ba30a62fd593a55bd749f446928e629830e763f465b07a43e39 +Subproject commit 1401c7503971731395738239f8a5c4693b7a2e409477a296547b1aca8e0a81bc -- 2.51.1