Clerk helps developers build user management. Applications that use the verifyWebhook() helper to verify incoming Clerk webhooks are susceptible to accepting improperly signed webhook events. The issue was resolved in @clerk/backend 2.4.0.
2025-07-09T18:15:24.157
2025-07-10T13:17:30.017
Awaiting Analysis
CVSSv3.1: 7.5 (HIGH)
-