GSA / datagov-ckan-multi

Other
10 stars 6 forks source link

Patch PySAML2 due to a security problem #544

Closed avdata99 closed 3 years ago

avdata99 commented 3 years ago

Fix the vulnerability at https://github.com/GSA/catalog.data.gov/pull/198 Details here: https://app.snyk.io/org/data.gov/project/7b050d09-1560-4a75-8b06-757b5c7b62b9/pr-check/d9c98901-4792-49d4-abee-d84b2d6bece1

How to solve? Read this and patch PySAML2 4.9.0 whit this

Expected behavior

Remove the bulnerability

Actual behavior

PySAML2 is vulnerable