IntermediateAuthentication

Authentication Vulnerabilities in Single-Page Applications

Priya Sharma
Harsh Kumar
18 May 2025

Abstract

Single-Page Applications present unique authentication challenges. This research examines token storage strategies, CSRF in SPA contexts, silent refresh vulnerabilities, and the security implications of common authentication library defaults. We provide a taxonomy of SPA authentication vulnerabilities observed across 30+ production applications.

The full research paper is currently being finalized for publication. The complete findings, methodology, proof-of-concept code, and remediation guidance will be available here upon release.

To be notified of the release or to request an advance copy, please contact us.

Tags:AuthenticationJWTOAuthSPACSRF