Known Vulnerabilities for products from Picketlink
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Picketlink".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2015-6254 json | The (1) Service Provider (SP) and (2) Identity Provider (IdP) in PicketLink before 2.7.0 does not ensure that the Destination... | Not Provided | 2015-08-17 | 2026-05-06 |
| CVE-2015-3158 json | The invokeNextValve function in identity/federation/bindings/tomcat/idp/AbstractIDPValve.java in PicketLink before 2.8.0.Beta... | Not Provided | 2015-08-26 | 2026-05-06 |
| CVE-2015-0277 json | The Service Provider (SP) in PicketLink before 2.7.0 does not ensure that it is a member of an Audience element when an Audie... | Not Provided | 2015-08-17 | 2026-05-06 |
Known software with vulnerabilities from Picketlink
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Picketlink | Picketlink | 2.7.0 |