← Back

Lightopenid

lightopenid

Vendor: Lightopenid Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Lightopenid Project
1Lightopenid
Nov 21, 2024
May 10, 2019
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
openid.php in LightOpenID through 1.3.1 allows SSRF via a crafted OpenID 2.0 assertion request using the HTTP GET method.