-
CVSS Score
-| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| keystone | pip | < 8.0.0a0 | 8.0.0a0 |
The vulnerability stemmed from mismatched timestamp precision between MySQL-stored revocation events (second precision) and token expiration times (microsecond precision). The unpatched functions: