Vulnerabilities > Saml Project

DATE CVE VULNERABILITY TITLE RISK
2023-10-16 CVE-2023-45683 Cross-site Scripting vulnerability in Saml Project Saml
github.com/crewjam/saml is a saml library for the go language.
network
low complexity
saml-project CWE-79
6.1
2023-03-22 CVE-2023-28119 Allocation of Resources Without Limits or Throttling vulnerability in Saml Project Saml 0.4.12
The crewjam/saml go library contains a partial implementation of the SAML standard in golang.
network
low complexity
saml-project CWE-770
7.5
2022-11-28 CVE-2022-41912 Improper Authentication vulnerability in Saml Project Saml
The crewjam/saml go library prior to version 0.4.9 is vulnerable to an authentication bypass when processing SAML responses containing multiple Assertion elements.
network
low complexity
saml-project CWE-287
critical
9.8
2020-12-21 CVE-2020-27846 Misinterpretation of Input vulnerability in multiple products
A signature verification vulnerability exists in crewjam/saml.
network
low complexity
grafana saml-project redhat fedoraproject CWE-115
critical
9.8