← Back

Samlv2

samlv2

Vendor: Fusionauth • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Fusionauth
1Samlv2
Nov 21, 2024
Oct 2, 2020
N/A· v4
9.1 CRITICAL· v3
6.4 MEDIUM· v2
FusionAuth fusionauth-samlv2 0.2.3 allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature element, aka a "Signature exclusion attack".