VYPR

Maven package

org.openidentityplatform.openam/openam-federation-library

pkg:maven/org.openidentityplatform.openam/openam-federation-library

Vulnerabilities (2)

  • CVE-2026-45052CriSep 15, 2026
    affected < 16.1.1fixed 16.1.1

    Open Access Management (OpenAM) is an access management solution. Prior to 16.1.1, the Liberty Web Services SOAP receiver permits unauthenticated remote requests to write persistent entries through SOAPReceiver and DiscoveryService into a user's Liberty Discovery store and the sh

  • CVE-2023-37471CriJul 20, 2023
    affected < 14.7.3fixed 14.7.3

    Open Access Management (OpenAM) is an access management solution that includes Authentication, SSO, Authorization, Federation, Entitlements and Web Services Security. OpenAM up to version 14.7.2 does not properly validate the signature of SAML responses received as part of the SA