2.6.4
17 years ago
10 years ago
Known vulnerabilities in the org.opensaml:opensaml package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
org.opensaml:opensaml provides tools to support developers working with the Security Assertion Markup Language (SAML). Affected versions of this package are vulnerable to Improper Certificate Validation.
How to fix Improper Certificate Validation? Upgrade | [2.0.0,2.6.2) |
| [,2.6.5) |
org.opensaml:opensaml provides tools to support developers working with the Security Assertion Markup Language (SAML). Affected versions of this package are vulnerable to Information Exposure.
The (1) BasicParserPool, (2) StaticBasicParserPool, (3) XML Decrypter, and (4) SAML Decrypter set the How to fix Information Exposure? Upgrade | [,2.6.1) |