Known vulnerabilities in gosaml2
Vendor:
Russell Haering
Software:
gosaml2
Software CPE:
cpe:2.3:a:russell_haering:gosaml2:*:*:*:*:*:*:*:*
Website:
https://github.com/russellhaering
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU128391 - Improper Verification of Cryptographic Signature |
CWE-347 | Medium | 0.11.0 | 28.04.2026 |
SB20260428210 |
||
| #VU128390 - Improper Check for Unusual or Exceptional Conditions |
CWE-754 | Medium | 0.11.0 | 28.04.2026 |
SB20260428210 |
||
| #VU128389 - Improper Handling of Highly Compressed Data (Data Amplification) CVE-2023-26483 |
CWE-409 | Medium | 0.9.0 | 01.03.2023 |
SB2023030165 |
||
| #VU128387 - Improper Verification of Cryptographic Signature CVE-2020-29509 |
CWE-347 | High | 0.6.0 | 14.12.2020 |
SB2020121425 SB2021020447 |
||
| #VU128388 - Improper Verification of Cryptographic Signature CVE-2020-15216 |
CWE-347 | High | 0.5.0 | 29.09.2020 |
SB2020092919 SB2021010528 SB2021010529 |
||
| #VU46721 - NULL Pointer Dereference CVE-2020-7731 |
CWE-476 | Medium | 0.7.0 | 15.09.2020 |
SB2020091504 SB2024080829 |