blob: df6f317022fd65b354dbd91a351b1fc92c298924 [file] [log] [blame]
module = "github.com/dexidp/dex"
package = "github.com/dexidp/dex/connector/saml"
description = """
An XML message can be maliciously crafted such that signature
verification is bypassed.
"""
cve = "CVE-2020-15216"
credit = "Juho Nurminen (Mattermost)"
symbols = ["provider.HandlePOST"]
published = "2021-04-14T12:00:00Z"
[[versions]]
fixed = "v0.0.0-20201214082111-324b1c886b40"
[links]
commit = "https://github.com/dexidp/dex/commit/324b1c886b407594196113a3dbddebe38eecd4e8"
context = ["https://github.com/dexidp/dex/security/advisories/GHSA-m9hp-7r99-94h5"]