You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Critical security issues in XML encoding in github.com/dexidp/dex
Critical severity
GitHub Reviewed
Published
Dec 14, 2020
in
dexidp/dex
•
Updated Oct 2, 2023
Impact
The following vulnerabilities have been disclosed, which impact users leveraging the SAML connector:
Signature Validation Bypass (CVE-2020-15216): GHSA-q547-gmf8-8jr7
encoding/xml
instabilities:Patches
Immediately update to Dex v2.27.0.
Workarounds
There are no known workarounds.
References