Vulnerability Database

With exploit

Composer icon simplesamlphp / simplesamlphp

Title Severity Exploit Date Affected Version
SimpleSAMLphp Information Disclosure vulnerability Medium May 28, 2024 >= 1.17.0 < 1.17.8
SimpleSAMLphp Reflected Cross-site Scripting vulnerability Medium May 28, 2024 >= 1.12.0 < 1.17.3
SimpleSAMLphp signature validation bypass Critical May 28, 2024 >= 1.12.0 < 1.14.17
SimpleSAMLphp exposes credentials in session storage Medium May 28, 2024 >= 1.16.0 < 1.16.3
SimpleSAMLphp Link Injection vulnerability Medium May 28, 2024 < 1.14.4
CVE-2020-5301 Low Apr 21, 2020 < 1.18.6
CVE-2020-5226 Low Jan 24, 2020 < 1.18.4
>= 1.18.0 < 1.18.4
Link injection in SimpleSAMLphp Low Jan 24, 2020 < 1.14.4
CVE-2020-5225 Low Jan 24, 2020 < 1.18.4
CVE-2019-3465 High Nov 7, 2019 <= 1.17.6