Packagist (Composer) package
miniorange/miniorange-saml
pkg:composer/miniorange/miniorange-saml
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-36786 | Hig | 7.5 | < 1.4.3 | 1.4.3 | Aug 13, 2021 | The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows Sensitive Data Exposure of API credentials and private keys. | |
| CVE-2021-36785 | Med | 5.4 | < 1.4.3 | 1.4.3 | Aug 13, 2021 | The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows XSS. |
- affected < 1.4.3fixed 1.4.3
The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows Sensitive Data Exposure of API credentials and private keys.
- affected < 1.4.3fixed 1.4.3
The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows XSS.