Описание
Spring Security SAML2 Service Provider: RelyingPartyRegistration may run arbitrary code on HTML forms generated by Spring Security filters
An attacker able to influence values in RelyingPartyRegistration may be able to run arbitrary code on HTML forms generated by Spring Security filters.
Affected versions: Spring Security 5.7.0 through 5.7.23; 5.8.0 through 5.8.25; 6.3.0 through 6.3.16; 6.4.0 through 6.4.16; 6.5.0 through 6.5.10; 7.0.0 through 7.0.5.
Пакеты
org.springframework.security:spring-security-saml2-service-provider
>= 7.0.0, <= 7.0.5
7.0.6
org.springframework.security:spring-security-saml2-service-provider
>= 6.5.0, <= 6.5.10
6.5.11
org.springframework.security:spring-security-saml2-service-provider
>= 6.4.0, <= 6.4.16
Отсутствует
org.springframework.security:spring-security-saml2-service-provider
>= 6.3.0, <= 6.3.16
Отсутствует
org.springframework.security:spring-security-saml2-service-provider
>= 5.8.0, <= 5.8.25
Отсутствует
org.springframework.security:spring-security-saml2-service-provider
<= 5.7.23
Отсутствует
Связанные уязвимости
An attacker able to influence values in RelyingPartyRegistration may be able to run arbitrary code on HTML forms generated by Spring Security filters. Affected versions: Spring Security 5.7.0 through 5.7.23; 5.8.0 through 5.8.25; 6.3.0 through 6.3.16; 6.4.0 through 6.4.16; 6.5.0 through 6.5.10; 7.0.0 through 7.0.5.
An attacker able to influence values in RelyingPartyRegistration may be able to run arbitrary code on HTML forms generated by Spring Security filters. Affected versions: Spring Security 5.7.0 through 5.7.23; 5.8.0 through 5.8.25; 6.3.0 through 6.3.16; 6.4.0 through 6.4.16; 6.5.0 through 6.5.10; 7.0.0 through 7.0.5.
An attacker able to influence values in RelyingPartyRegistration may b ...