Known Vulnerabilities for Saml by Saml Project
Listed below are 4 of the newest known vulnerabilities associated with "Saml" by "Saml Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-89043 json | passport-saml-encrypted through 0.1.13 contains an XML signature wrapping vulnerability where signature verification and asse... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-89042 json | passport-saml-encrypted through 0.1.13 makes SAML signature verification conditional on an optional cert option, allowing att... | Not Provided | 2026-09-10 | 2026-09-10 |
| CVE-2026-86770 json | Snipe-IT before 8.7.0 fails to validate username case sensitivity during SAML authentication, allowing attackers to authentic... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86756 json | Snipe-IT 8.5.0 through 8.6.3 contains an open redirect vulnerability in its SAML assertion-consumer endpoint (SamlController:... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-86597 json | Insertion of sensitive information into log files in the Snowflake Python, Go, JDBC, Node.js, PHP PDO, and ODBC drivers allow... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-86304 json | MojoX::Authentication versions before 0.006 for Perl allow SAML authentication bypass because parse_assertion builds Net::SAM... | Not Provided | 2026-09-06 | 2026-09-08 |
| CVE-2026-84941 json | An information disclosure vulnerability in the SAML Single Sign-On (SSO) functionality of Omada Controller allows an authenti... | Not Provided | 2026-09-11 | 2026-09-11 |
| CVE-2026-84668 json | Jenkins SAML Plugin 4.618.v441a_27fa_46d2 and earlier allows overwriting the SAML identity provider metadata file through Sta... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-84114 json | A vulnerability has been found in Cleo Harmony up to 5.8.1.10. Impacted is the function LocalUserUtil.getNativeUserByAssertio... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-82465 json | pac4j-saml before 6.5.6 does not require signature validation of SAML LogoutRequest messages in SAML2LogoutValidator.validate... | Not Provided | 2026-08-29 | 2026-08-31 |