A vulnerability, which was classified as critical, has been found in synth omniauth-microsoft_graph up to 1.x. Affected by this issue is some unknown functionality. The manipulation of the argument email leads to improper authentication.
This vulnerability is handled as CVE-2024-21632. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.