Hugo | DevOps | Cybersecurity 🇱🇻[verified]@HugoValtersDisclosure
The post announces a high‑severity URL scheme bypass in Better‑Auth that enables XSS on consent pages; no patch exists yet, so users are advised to block untrusted clients.
Mohi@disismohiGeneral
The post references CVE‑2026‑67333 as an OAuth redirect vulnerability but provides no further technical detail, exploit code, patch information, or evidence of active exploitation.
Mohi@disismohiPatch
The note highlights a vulnerability in OAuth redirect_uri handling and urges applying a patch before new clients are registered, without providing PoC or exploit details.
Infoflowcloud@infoflowcloudDisclosure
The post references CVE-2026-67333 and describes a redirect_uri scheme validation flaw in better-auth, links to the CVE record, but provides no PoC, exploit, patch, or evidence of active exploitation.
CVE@CVEnewGeneral
The excerpt indicates that earlier releases of better‑auth suffer from a redirect‑URI scheme validation flaw that could potentially be abused, but no exploitation details, fixes, or PoC were provided.