Safety vulnerability ID: 35700
The information on this page was manually curated by our Cybersecurity Intelligence Team.
pysaml2 version 4.4.0 and older accept any password when run with python optimizations enabled. This allows attackers to log in as any user without knowing their password.
Latest version: 7.5.0
Python implementation of SAML Version 2 Standard
pysaml2 version 4.4.0 and older accept any password when run with python optimizations enabled. This allows attackers to log in as any user without knowing their password.
CONFIRM:https://github.com/rohe/pysaml2/issues/451: https://github.com/rohe/pysaml2/issues/451
GENTOO:GLSA-201801-11: https://security.gentoo.org/glsa/201801-11
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application