OAuth is frequently marketed as "more secure". But implementations often confuse authentication with authorization, resulting in problems like this.

I just say auth. You decide which one I mean.

I know it's a joke, but it's funny because it's (somewhat) true. To add to the confusion, sometimes one of them gets abbreviated "authn". That is so unhelpful.