CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Passport Saml Project 1Passport Saml Nov 21, 2024 Oct 12, 2022 N/A· v4 8.1 HIGH· v3 N/A· v2 Passport-SAML is a SAML 2.0 authentication provider for Passport, the Node.js authentication library. A remote attacker may be able to bypass SAML authentication on a website using passport-saml. A successful attack requ...Show more |
1Passport Saml Project 1Passport Saml Nov 21, 2024 Aug 27, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Passport-SAML is a SAML 2.0 authentication provider for Passport, the Node.js authentication library. Prior to version 3.1.0, a malicious SAML payload can require transforms that consume significant system resources to p...Show more |