Vulnerabilities > Shibboleth > Xmltooling

DATE CVE VULNERABILITY TITLE RISK
2023-06-25 CVE-2023-36661 Server-Side Request Forgery (SSRF) vulnerability in multiple products
Shibboleth XMLTooling before 3.2.4, as used in OpenSAML and Shibboleth Service Provider, allows SSRF via a crafted KeyInfo element.
network
low complexity
shibboleth debian CWE-918
7.5