Skip to content

Security fixes#750

Merged
pitbulk merged 3 commits intomasterfrom
security_fix_1.18.0
Mar 12, 2025
Merged

Security fixes#750
pitbulk merged 3 commits intomasterfrom
security_fix_1.18.0

Conversation

@pitbulk
Copy link
Copy Markdown
Collaborator

@pitbulk pitbulk commented Mar 12, 2025

Fix vulnerabilities: CVE-2025-25291, CVE-2025-25292: SAML authentication bypass via Signature Wrapping attack allowed due parser differential.

Fix vulnerability: CVE-2025-25293: Potential DOS abusing of compressed messages.

@pitbulk pitbulk merged commit fb2eac1 into master Mar 12, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant