• Node-saml Root Element Signature Bypass

    From Security Bot@2:250/1 to All on Sun Dec 25 20:22:00 2022


    Node-saml Root Element Signature Bypass

    Node-saml and its partner project passport-saml are vulnerable to an authentication bypass due to lax parsing of SAML responses.

    https://packetstormsecurity.com/files/169826/GS20221114165410.tgz

    Mon, 14 Nov 2022 16:54:12 GMT
    ________________________________
    --- The information is for inforamtional purposes only.
    * Origin: Read us with http://winpoint.org JID: rs@captflint.com