crewjam/saml Signature Bypass

The crewjam/saml go library is vulnerable to an authentication bypass when processing SAML responses containing multiple Assertion elements.

Leave a Reply