Vulnerabilities > Shibboleth > Xmltooling
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-06-25 | CVE-2023-36661 | Server-Side Request Forgery (SSRF) vulnerability in multiple products Shibboleth XMLTooling before 3.2.4, as used in OpenSAML and Shibboleth Service Provider, allows SSRF via a crafted KeyInfo element. | 7.5 |