SAML-Toolkits / ruby-saml

SAML SSO for Ruby
MIT License
921 stars 567 forks source link

CVE-2024-45409 - SAML authentication bypass via Incorrect XPath selector #721

Open pitbulk opened 2 months ago

pitbulk commented 2 months ago

Please upgrade to ruby-saml 1.17.0 or 1.12.3

eggplants commented 2 months ago

GitHub Advisory: https://github.com/advisories/GHSA-jw9c-mfg7-9rx2