Known vulnerabilities in SAML SSO for Ruby

Software CPE: cpe:2.3:a:saml-toolkits:ruby-saml:*:*:*:*:*:*:*:*
Total vulnerabilities: 6
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting SAML SSO for Ruby SAML SSO for Ruby is affected by 6 known vulnerabilities: 5 high, 1 medium Critical High Medium Low

Vulnerabilities (6)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU119405 - Improper Verification of Cryptographic Signature
CVE-2025-66567
CWE-347 High
No
No
1.18.0 09.12.2025 SB2025120933
SB2026021820
#VU119404 - Improper Verification of Cryptographic Signature
CVE-2025-66568
CWE-347 High
No
No
1.18.0 09.12.2025 SB2025120933
SB2026021820
#VU105982 - Resource exhaustion
CVE-2025-25293
CWE-400 Medium
No
No
1.12.4, 1.18.0 24.03.2025 SB2025031314
SB20250402144
#VU105688 - Improper Verification of Cryptographic Signature
CVE-2025-25292
CWE-347 High
No
No
1.12.4, 1.18.0 13.03.2025 SB2025031314
SB2025031316
SB20250402144
and 1 more
#VU105687 - Improper Verification of Cryptographic Signature
CVE-2025-25291
CWE-347 High
No
No
1.12.4, 1.18.0 13.03.2025 SB2025031314
SB2025031316
SB20250402144
#VU97454 - Improper Verification of Cryptographic Signature
CVE-2024-45409
CWE-347 High
Available
No
1.12.3, 1.17.0 18.09.2024 SB2024091805
SB2024091806
SB2024091807
and 1 more