• caglararli@hotmail.com
  • 05386281520

How to find out the verified email of a user in Microsoft OAuth

Çağlar Arlı      -    26 Views

How to find out the verified email of a user in Microsoft OAuth

I'm implementing Login with Microsoft

I've come across the following security vulnerability in Microsoft OAuth. The following is the link https://www.descope.com/blog/post/noauth

The following are some of the queries I still couldn't resolve after searching a lot online:

  1. How to find the verified email or actual email of the Microsoft user

  2. is the vulnerability fixed by Microsoft, if yes where can I find the confirmation by Microsoft?