omniauth-apple
OmniAuth strategy for Sign In with Apple
Activity
- Latest release
- 8mo ago
- Total releases
- 14
- Cadence
- ~2 months
- Last 12 months
- 1
Reach
- Stars
- —
Details
- License
- MIT
- First release
- Jun 07, 2019
| Version | Released | |
|---|---|---|
1.4.0
minor
| ||
1.3.0
minor
| ||
1.3.0.alpha2
pre
| ||
1.3.0.alpha
pre
| ||
1.2.2
patch
| ||
1.2.1
patch
| ||
1.2.0
minor
|
1.2.0
minor
Dependencies (8)
Changelog
Compare changes
|
|
1.1.0
minor
|
1.1.0
minor
Dependencies (8)
Changelog
Compare changes
|
|
1.0.2
patch
| ||
1.0.1
patch
| ||
1.0.0
major
1 CVE
CVE-2020-26254
GHSA-49r3-2549-3633
Dec 08, 2020
omniauth-apple allows attacker to fake their email address during authentication
7.7
/ 10
High
Network
Low
Low
None
Changed
None
High
None
ImpactThis vulnerability impacts applications using the omniauth-apple strategy of OmniAuth and using the For example, an application using omniauth-apple with the following code will be impacted:
Applications not using PatchesApplications using affected versions of omniauth-apple are advised to upgrade to omniauth-apple version 1.0.1 or later. WorkaroundsIf unable to upgrade to a patched version, monkey patching
Affected versions
0.0.1
0.0.2
0.0.3
1.0.0
Fixed in
1.0.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.0.3
patch
1 CVE
CVE-2020-26254
GHSA-49r3-2549-3633
Dec 08, 2020
omniauth-apple allows attacker to fake their email address during authentication
7.7
/ 10
High
Network
Low
Low
None
Changed
None
High
None
ImpactThis vulnerability impacts applications using the omniauth-apple strategy of OmniAuth and using the For example, an application using omniauth-apple with the following code will be impacted:
Applications not using PatchesApplications using affected versions of omniauth-apple are advised to upgrade to omniauth-apple version 1.0.1 or later. WorkaroundsIf unable to upgrade to a patched version, monkey patching
Affected versions
0.0.1
0.0.2
0.0.3
1.0.0
Fixed in
1.0.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.0.2
patch
1 CVE
CVE-2020-26254
GHSA-49r3-2549-3633
Dec 08, 2020
omniauth-apple allows attacker to fake their email address during authentication
7.7
/ 10
High
Network
Low
Low
None
Changed
None
High
None
ImpactThis vulnerability impacts applications using the omniauth-apple strategy of OmniAuth and using the For example, an application using omniauth-apple with the following code will be impacted:
Applications not using PatchesApplications using affected versions of omniauth-apple are advised to upgrade to omniauth-apple version 1.0.1 or later. WorkaroundsIf unable to upgrade to a patched version, monkey patching
Affected versions
0.0.1
0.0.2
0.0.3
1.0.0
Fixed in
1.0.1
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.0.1
initial
1 CVE
CVE-2020-26254
GHSA-49r3-2549-3633
Dec 08, 2020
omniauth-apple allows attacker to fake their email address during authentication
7.7
/ 10
High
Network
Low
Low
None
Changed
None
High
None
ImpactThis vulnerability impacts applications using the omniauth-apple strategy of OmniAuth and using the For example, an application using omniauth-apple with the following code will be impacted:
Applications not using PatchesApplications using affected versions of omniauth-apple are advised to upgrade to omniauth-apple version 1.0.1 or later. WorkaroundsIf unable to upgrade to a patched version, monkey patching
Affected versions
0.0.1
0.0.2
0.0.3
1.0.0
Fixed in
1.0.1
References
Updated Sep 10, 2026 · Source: OSV.dev |