Glewlwyd SSO Server Project
Glewlwyd SSO Server Project Glewlwyd SSO Server: vulnerabilidades y CVE
Glewlwyd SSO Server Project Glewlwyd SSO Server tiene 4 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses0
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-25715 | Media (6.1) | 0.41% | — | 11 feb 2024 | Glewlwyd SSO server 2.x through 2.7.6 allows open redirection via redirect_uri. |
| CVE-2023-49208 | Crítica (9.8) | 0.88% | — | 23 nov 2023 | scheme/webauthn.c in Glewlwyd SSO server before 2.7.6 has a possible buffer overflow during FIDO2 credentials validation in webauthn registration. |
| CVE-2022-27240 | Crítica (9.8) | 1.6% | — | 18 mar 2022 | scheme/webauthn.c in Glewlwyd SSO server 2.x before 2.6.2 has a buffer overflow associated with a webauthn assertion. |
| CVE-2021-40818 | Crítica (9.8) | 1.5% | — | 8 sept 2021 | scheme/webauthn.c in Glewlwyd SSO server through 2.5.3 has a buffer overflow during FIDO2 signature validation in webauthn registration. |