SAML2 PHP library from SimpleSAMLphp
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2025-27773 simplesamlphp/saml2 is vulnerable to Improper Verification of Cryptographic Signature in versions 5.0.0-alpha.1 - 5.0.0-alpha.19 and 0.0.0 - 4.16.15. | 0.0.0 - 4.16.155.0.0-alpha.1 - 5.0.0-alpha.19 | High |
CVE-2024-52806 simplesamlphp/saml2 is vulnerable to Improper Restriction of XML External Entity Reference in versions 0.0.0 - 4.6.14. | 0.0.0 - 4.6.14 | High |
CVE-2018-6519 simplesamlphp/saml2 is vulnerable to Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') in versions 0.0.0 - 1.10.4, 2.0 - 2.3.5 and 3.0 - 3.1.1. | 0.0.0 - 1.10.42.0 - 2.3.53.0 - 3.1.1 | High |
CVE-2016-9814 simplesamlphp/saml2 is vulnerable to Security Vulnerability in versions 1.10 - 1.10.3, 0.0.0 - 1.8.1, 1.9.0 - 1.9.1 and 2.0 - 2.3.3. | 0.0.0 - 1.8.11.9.0 - 1.9.11.10 - 1.10.3 +1 more | Critical |
CVE-2018-7711 simplesamlphp/saml2 is vulnerable to Improper Verification of Cryptographic Signature in versions 0.0.0 - 1.10.6, 2.0 - 2.3.8 and 3.0 - 3.1.4. | 0.0.0 - 1.10.62.0 - 2.3.83.0 - 3.1.4 | High |
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ~3.0 | — | — |
psr/clock Version ~1.0 | — | — |
nyholm/psr7 Version ~1.8 | — | — |
psr/http-message Version ~2.0 | — | — |
simplesamlphp/assert Version ~2.0 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant