CVE-2026-55735:Improper Verification of Cryptographic Signature in ueberauth guardian allows an unauthenticated attacker to revoke a vi
Improper Verification of Cryptographic Signature in ueberauth guardian allows an unauthenticated attacker to revoke a victim's session with a forged token. Guardian.revoke/3 in lib/guardian.ex decodes the supplied token with peek/1, which performs no sig