Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-79772

23 дня назад

Nokogiri versions before 1.19.1 fail to check the return value from xmlC14NExecute in the canonicalize method, returning an empty string on failure instead of raising an exception. Attackers can exploit this to bypass signature validation in downstream SAML libraries by providing invalid canonicalized XML that is incorrectly accepted as valid.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-79772

23 дня назад

Nokogiri versions before 1.19.1 fail to check the return value from xmlC14NExecute in the canonicalize method, returning an empty string on failure instead of raising an exception. Attackers can exploit this to bypass signature validation in downstream SAML libraries by providing invalid canonicalized XML that is incorrectly accepted as valid.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-79772

23 дня назад

Nokogiri versions before 1.19.1 fail to check the return value from xmlC14NExecute in the canonicalize method, returning an empty string on failure instead of raising an exception. Attackers can exploit this to bypass signature validation in downstream SAML libraries by providing invalid canonicalized XML that is incorrectly accepted as valid.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2026-79772

23 дня назад

Nokogiri versions before 1.19.1 fail to check the return value from xm ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-wx95-c6cv-8532

7 месяцев назад

Nokogiri does not check the return value from xmlC14NExecute

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-79772

Nokogiri versions before 1.19.1 fail to check the return value from xmlC14NExecute in the canonicalize method, returning an empty string on failure instead of raising an exception. Attackers can exploit this to bypass signature validation in downstream SAML libraries by providing invalid canonicalized XML that is incorrectly accepted as valid.

CVSS3: 5.3
0%
Низкий
23 дня назад
redhat логотип
CVE-2026-79772

Nokogiri versions before 1.19.1 fail to check the return value from xmlC14NExecute in the canonicalize method, returning an empty string on failure instead of raising an exception. Attackers can exploit this to bypass signature validation in downstream SAML libraries by providing invalid canonicalized XML that is incorrectly accepted as valid.

CVSS3: 5.3
0%
Низкий
23 дня назад
nvd логотип
CVE-2026-79772

Nokogiri versions before 1.19.1 fail to check the return value from xmlC14NExecute in the canonicalize method, returning an empty string on failure instead of raising an exception. Attackers can exploit this to bypass signature validation in downstream SAML libraries by providing invalid canonicalized XML that is incorrectly accepted as valid.

CVSS3: 5.3
0%
Низкий
23 дня назад
debian логотип
CVE-2026-79772

Nokogiri versions before 1.19.1 fail to check the return value from xm ...

CVSS3: 5.3
0%
Низкий
23 дня назад
github логотип
GHSA-wx95-c6cv-8532

Nokogiri does not check the return value from xmlC14NExecute

CVSS3: 5.3
0%
Низкий
7 месяцев назад

Уязвимостей на страницу