Skip to main content

Vendor/product archive

dropbox / samly CVEs

Beta · best-effort

1 CVEs tagged to dropbox / samly1 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2024-25718

Published Feb 11, 2024

In the Samly package before 1.4.0 for Elixir, Samly.State.Store.get_assertion/3 can return an expired session, which interferes with access control because Samly.AuthHandler uses…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1