Vulnerabilities > TYK > TYK Identity Broker > 1.1.0

DATE CVE VULNERABILITY TITLE RISK
2021-04-26 CVE-2021-23365 Improper Authentication vulnerability in TYK Tyk-Identity-Broker
The package github.com/tyktechnologies/tyk-identity-broker before 1.1.1 are vulnerable to Authentication Bypass via the Go XML parser which can cause SAML authentication bypass.
network
low complexity
tyk CWE-287
5.5