I’ve found default endpoints in OKTA Auth0 during my pentesting and I found that I can bypass authentication with registration endpoint that is not disabled. Here is the entire guide

Step by Step Guide
Step by step Auth0 Security misconfiguration exploiting for bug bounty , low hanging fruits.❤️ New Technique ❤️