Vulnerabilities > Atlassian > Saml Single Sign ON > 2.5.1

DATE CVE VULNERABILITY TITLE RISK
2021-08-02 CVE-2021-37843 Missing Authentication for Critical Function vulnerability in Atlassian Saml Single Sign ON
The resolution SAML SSO apps for Atlassian products allow a remote attacker to login to a user account when only the username is known (i.e., no other authentication is provided).
network
low complexity
atlassian CWE-306
7.5
2019-12-13 CVE-2019-13347 Unspecified vulnerability in Atlassian Saml Single Sign ON
An issue was discovered in the SAML Single Sign On (SSO) plugin for several Atlassian products affecting versions 3.1.0 through 3.2.2 for Jira and Confluence, versions 2.4.0 through 3.0.3 for Bitbucket, and versions 2.4.0 through 2.5.2 for Bamboo.
network
atlassian
6.0