Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2783▼ 434 respecto a la semana anterior
Críticas / altas1335▼ 118 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
166 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 2.7% | — | Clever Saml2-js | 17/4/2019 | 17/6/2026 | Clever saml2-js 2.0 and earlier may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attacker may be able to manipulate the SAML data without invalidating the cryptographic signature, allowing the attack to potentially bypass authentication to SAML service providers. | |
| Modificada | Crítica (9.8) | 2.5% | — | Onelogin Ruby-saml | 17/4/2019 | 17/6/2026 | OneLogin Ruby-SAML 1.6.0 and earlier may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attacker may be able to manipulate the SAML data without invalidating the cryptographic signature, allowing the attack to potentially bypass authentication to SAML service… | |
| Modificada | Crítica (9.8) | 4.7% | 💥 PoC | Onelogin Pythonsaml | 17/4/2019 | 17/6/2026 | OneLogin PythonSAML 2.3.0 and earlier may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attacker may be able to manipulate the SAML data without invalidating the cryptographic signature, allowing the attack to potentially bypass authentication to SAML service… | |
| Modificada | Media (5.9) | 0.84% | — | Shibboleth Identity ProviderShibboleth Opensaml Java | 4/4/2019 | 17/6/2026 | The (1) HttpResource and (2) FileBackedHttpResource implementations in Shibboleth Identity Provider (IdP) before 2.4.1 and OpenSAML Java 2.6.2 do not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle… | |
| Modificada | Alta (7.5) | 1.7% | — | Wizkunde Samlbase | 24/7/2018 | 17/6/2026 | Wizkunde SAMLBase may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attacker may be able to manipulate the SAML data without invalidating the cryptographic signature, allowing the attack to potentially bypass authentication to SAML service providers. | |
| Modificada | Media (5.9) | 0.85% | — | Jenkins Saml | 26/6/2018 | 17/6/2026 | A session fixation vulnerability exists in Jenkins SAML Plugin 1.0.6 and earlier in SamlSecurityRealm.java that allows unauthorized attackers to impersonate another users if they can control the pre-authentication session. | |
| Modificada | Alta (7.5) | 1.2% | — | Lightsaml | 18/4/2018 | 17/6/2026 | LightSAML version prior to 1.3.5 contains a Incorrect Access Control vulnerability in signature validation in readers in src/LightSaml/Model/XmlDSig/ that can result in impersonation of any user from Identity Provider. This vulnerability appears to have been fixed in 1.3.5 and later. | |
| Modificada | Alta (8.1) | 1.2% | — | SimplesamlphpSimplesamlphp Saml2Debian Linux | 5/3/2018 | 17/6/2026 | HTTPRedirect.php in the saml2 library in SimpleSAMLphp before 1.15.4 has an incorrect check of return values in the signature validation utilities, allowing an attacker to get invalid signatures accepted as valid by forcing an error during validation. This occurs because of a dependency on PHP functionality that… | |
| Modificada | Alta (7.5) | 1.2% | — | Simplesamlphp | 5/3/2018 | 17/6/2026 | The XmlSecLibs library as used in the saml2 library in SimpleSAMLphp before 1.15.3 incorrectly verifies signatures on SAML assertions, allowing a remote attacker to construct a crafted SAML assertion on behalf of an Identity Provider that would pass as cryptographically valid, thereby allowing them to impersonate a… | |
| Modificada | Alta (8.1) | 1.1% | — | SimplesamlphpDebian Linux | 2/2/2018 | 17/6/2026 | A signature-validation bypass issue was discovered in SimpleSAMLphp through 1.14.16. A SimpleSAMLphp Service Provider using SAML 1.1 will regard as valid any unsigned SAML response containing more than one signed assertion, provided that the signature of at least one of the assertions is valid. Attributes contained in… | |
| Modificada | Media (6.1) | 1.2% | — | SimplesamlphpDebian Linux | 2/2/2018 | 17/6/2026 | The consentAdmin module in SimpleSAMLphp through 1.14.15 is vulnerable to a Cross-Site Scripting attack, allowing an attacker to craft links that could execute arbitrary JavaScript code on the victim's web browser. | |
| Modificada | Crítica (9.8) | 3.1% | — | SimplesamlphpDebian Linux | 2/2/2018 | 17/6/2026 | The sqlauth module in SimpleSAMLphp before 1.15.2 relies on the MySQL utf8 charset, which truncates queries upon encountering four-byte characters. There might be a scenario in which this allows remote attackers to bypass intended access restrictions. | |
| Modificada | Media (6.1) | 0.85% | — | Simplesamlphp | 2/2/2018 | 17/6/2026 | SimpleSAMLphp before 1.15.2 allows remote attackers to bypass an open redirect protection mechanism via crafted authority data in a URL. | |
| Modificada | Alta (7.5) | 1.7% | — | Simplesamlphp Saml2Debian Linux | 2/2/2018 | 17/6/2026 | The SAML2 library before 1.10.4, 2.x before 2.3.5, and 3.x before 3.1.1 in SimpleSAMLphp has a Regular Expression Denial of Service vulnerability for fraction-of-seconds data in a timestamp. | |
| Modificada | Alta (8.1) | 2.5% | — | Pysaml2 Project Pysaml2Debian Linux | 2/1/2018 | 17/6/2026 | pysaml2 version 4.4.0 and older accept any password when run with python optimizations enabled. This allows attackers to log in as any user without knowing their password. | |
| Modificada | Alta (7.5) | 1.4% | — | Samlify Project Samlify | 2/1/2018 | 17/6/2026 | An XML Signature Wrapping vulnerability exists in Samlify 2.2.0 and earlier, and in predecessor Express-saml2 which could allow attackers to impersonate arbitrary users. | |
| Modificada | Alta (8.1) | 1.4% | — | Auth0 Passport-wsfed-saml2 | 27/12/2017 | 17/6/2026 | A vulnerability has been discovered in the Auth0 passport-wsfed-saml2 library affecting versions < 3.0.5. This vulnerability allows an attacker to impersonate another user and potentially elevate their privileges if the SAML identity provider does not sign the full SAML response (e.g., only signs the assertion within… | |
| Modificada | Media (5.3) | 0.89% | — | Pysaml2 Project Pysaml2 | 17/11/2017 | 17/6/2026 | Python package pysaml2 version 4.4.0 and earlier reuses the initialization vector across encryptions in the IDP server, resulting in weak encryption of data. | |
| Modificada | Alta (8.1) | 1.4% | — | Shibboleth OpensamlDebian Linux | 16/11/2017 | 17/6/2026 | The DynamicMetadataProvider class in saml/saml2/metadata/impl/DynamicMetadataProvider.cpp in OpenSAML-C in OpenSAML before 2.6.1 fails to properly configure itself with the MetadataFilter plugins and does not perform critical security checks such as signature verification, enforcement of validity periods, and other… | |
| Modificada | Alta (7.5) | 1.3% | — | Simplesamlphp Infocard ModuleDebian Linux | 1/9/2017 | 17/6/2026 | The InfoCard module 1.0 for SimpleSAMLphp allows attackers to spoof XML messages by leveraging an incorrect check of return values in signature validation utilities. | |
| Modificada | Crítica (9.8) | 1.7% | — | SimplesamlphpDebian Linux | 1/9/2017 | 17/6/2026 | SimpleSAMLphp 1.7.0 through 1.14.10 might allow attackers to obtain sensitive information, gain unauthorized access, or have unspecified other impacts by leveraging incorrect persistent NameID generation when an Identity Provider (IdP) is misconfigured. | |
| Modificada | Media (5.9) | 1.5% | — | SimplesamlphpDebian Linux | 1/9/2017 | 17/6/2026 | The (1) Htpasswd authentication source in the authcrypt module and (2) SimpleSAML_Session class in SimpleSAMLphp 1.14.11 and earlier allow remote attackers to conduct timing side-channel attacks by leveraging use of the standard comparison operator to compare secret material against user input. | |
| Modificada | Media (5.9) | 0.49% | — | Simplesamlphp | 1/9/2017 | 17/6/2026 | The aesEncrypt method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.x through 1.14.11 makes it easier for context-dependent attackers to bypass the encryption protection mechanism by leveraging use of the first 16 bytes of the secret key as the initialization vector (IV). | |
| Modificada | Media (5.9) | 0.88% | — | Simplesamlphp | 1/9/2017 | 17/6/2026 | SimpleSAMLphp 1.14.12 and earlier make it easier for man-in-the-middle attackers to obtain sensitive information by leveraging use of the aesEncrypt and aesDecrypt methods in the SimpleSAML/Utils/Crypto class to protect session identifiers in replies to non-HTTPS service providers. | |
| Modificada | Alta (7.5) | 2.4% | — | SimplesamlphpDebian Linux | 1/9/2017 | 17/6/2026 | The multiauth module in SimpleSAMLphp 1.14.13 and earlier allows remote attackers to bypass authentication context restrictions and use an authentication source defined in config/authsources.php via vectors related to improper validation of user input. |