GluuFederation / gluu-passport

Gluu interface to Passport.js to support social login and inbound identity.
Apache License 2.0
6 stars 16 forks source link

PR #547 introduced SAML `inResponseTo` validation related security issue and didn't add notes about other breaking changes to user documentation #552

Open srd90 opened 6 months ago

srd90 commented 6 months ago

See this comment from the #547 PR for additional information: https://github.com/GluuFederation/gluu-passport/pull/547/files#r1427259526 for additional information