fig. 01 — GHSA-xjr9-gg9q-jx3v, the advisory selected below
// advisories
GHSA-xjr9-gg9q-jx3v
CRITICALCVE-2026-54782
Full impersonation of any principal the trusted STS could have issued an assertion for — including administrative principals when the relying party grants them via SAML claims. Affects both SAML 1.1 and SAML 2.0.