Known vulnerabilities in OpenID Connect Generic Client
A simple client that provides SSO or opt-in authentication against a generic OAuth2 Server implementation.
1Reported vulnerabilities
6.4Highest CVSS score
3.11.3Latest version
10,000+Active installs
What to do now
Update OpenID Connect Generic Client to 3.10.1 or later.
1 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2025-13730 | Medium | 0.2% | 0 to 3.10.0 (inclusive) | 3.10.1 |
December 18, 2025 |