Skip to main content

Vendor/product archive

omniauth / omniauth_saml CVEs

Beta · best-effort

5 CVEs tagged to omniauth / omniauth_saml3 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2017-11430

Published Apr 17, 2019

OmniAuth OmnitAuth-SAML 1.9.0 and earlier may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attacker may be able to manipula…

CVSS 7.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1