Vulnerabilities (CVE)

Filtered by vendor Fusionauth Subscribe
Filtered by product Samlv2
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-12676 1 Fusionauth 1 Samlv2 2024-11-21 6.4 MEDIUM 9.1 CRITICAL
FusionAuth fusionauth-samlv2 0.2.3 allows remote attackers to forge messages and bypass authentication via a SAML assertion that lacks a Signature element, aka a "Signature exclusion attack".