
Laravel Passport、client_credentialsトークンで認証回避が可能になる脆弱性の(CVE-2026-3997) https://rocket-boys.co.jp/security-measures-lab/laravel-passport-authentication-bypass-cve-2026-3997/ #セキュリティ対策Lab #セキュリティ #Security #CybersecurityNews
Post summary
A new vulnerability (CVE-2026-3997) allowing authentication bypass through Laravel Passport’s client_credentials token has been disclosed, detailing the flaw but providing no PoC, exploit code, or patch information.


