GHSA-xhqq-x44f-9fgg
MEDIUMCVE-2020-29509Given a valid SAML Response, it may be possible for an attacker to mutate the XML document in such a way that gosaml2 will trust a different portion of the document than was signed.
- Affected
- >=0, <1.17.0
- Fixed in
- 0.6.0
- Published
- 2022-02-11
- Source
- github