CVE-2023-36661
Published Jun 25, 2023Shibboleth XMLTooling before 3.2.4, as used in OpenSAML and Shibboleth Service Provider, allows SSRF via a crafted KeyInfo element. (This is fixed in, for example, Shibboleth Serv…
Vendor/product archive
1 CVEs tagged to shibboleth / xmltooling — 0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
Shibboleth XMLTooling before 3.2.4, as used in OpenSAML and Shibboleth Service Provider, allows SSRF via a crafted KeyInfo element. (This is fixed in, for example, Shibboleth Serv…