V12 Found a Critical Bug in Better Auth
Better Auth kept OAuth state and magic-link tokens in the same table, so an attacker could redeem their own OAuth state as a magic-link token and sign in as any user. Fixed in Better Auth 1.7.7.
Better Auth kept OAuth state and magic-link tokens in the same table, so an attacker could redeem their own OAuth state as a magic-link token and sign in as any user. Fixed in Better Auth 1.7.7.