-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The advisory directly references SamlMessageUtil.validateSignature(), indicating its relevance to the vulnerability. The vulnerability is about missing validation on unsigned SAML messages, and this function is key to understanding how signatures are validated.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| com.linecorp.centraldogma:centraldogma-server-auth-saml | maven | <= 0.64.2 | 0.64.3 |
Ongoing coverage of React2Shell