
🚨Critical - Authlib OpenID Discovery Cache Poisoning (CVE-2026-104056) Authlib caches OIDC discovery JSON (.well-known/openid-configuration) without validating issuer/origin binding. By poisoning the cached discovery response, an attacker can swap authorization/token/jwks_uri endpoints to attacker-controlled URLs, enabling auth redirect/token interception and account compromise. 👉Affected: Authlib <= 1.7.2
