CVE-2024-52806

CVSS V2 None CVSS V3 None
Description
SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. When loading an (untrusted) XML document, for example the SAMLResponse, it's possible to induce an XXE. This vulnerability is fixed in 4.6.14 and 5.0.0-alpha.18.
Overview
  • CVE ID
  • CVE-2024-52806
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-12-02T16:18:43.485Z
  • Last Modified Date
  • 2024-12-02T19:12:33.197Z
History
Created Old Value New Value Data Type Notes
2024-12-03 13:22:13 Added to TrackCVE