← Back

Shibboleth

shibboleth

Vendor: Shibboleth Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Shibboleth Project
1Shibboleth
May 13, 2026
Sep 12, 2017
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
The shibboleth_login_form function in shibboleth.php in the Shibboleth plugin before 1.8 for WordPress is prone to an XSS vulnerability due to improper use of add_query_arg().