FLAT-U7YFM (CVE-2026-49289)
Asymmetric denial of service - ReDoS In simplesamlphp
6.6
Medium
Ecosystem: Debian
Component: simplesamlphp
FLAT-KHDIM (CVE-2026-49283)
Insecure digital certificates In simplesamlphp
8.1
High
Ecosystem: Debian
Component: simplesamlphp
FLAT-VTH38 (CVE-2026-49284)
Insufficient data authenticity validation In simplesamlphp
2.3
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-4YECD (DLA-4161-1)
Insecure file upload In simplesamlphp
1.3
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-RSEJ2 (CVE-2024-52596)
XML injection (XXE) In simplesamlphp
6.8
Medium
Ecosystem: Debian
Component: simplesamlphp
FLAT-Q4FAU (DLA-3981-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-X8PHT (DSA-5822-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-UD4MC (CVE-2020-5226)
Server side cross-site scripting In simplesamlphp
0.5
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-A1EIP (DSA-4560-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-Y7M7O (DLA-1983-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-ZL4A2 (DLA-1408-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-2SBRD (DLA-1314-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-470DX (DSA-4127-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-JR2I8 (DLA-1298-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-1PABW (DLA-1273-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-QJ161 (DLA-1205-1)
Improper authorization control for web services In simplesamlphp
2.7
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-GW4KL (CVE-2012-0040)
Server side cross-site scripting In simplesamlphp
1.3
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-YZ44Q (CVE-2012-0908)
Server side cross-site scripting In simplesamlphp
1.3
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-1Q87E (DSA-2387-1)
Server side cross-site scripting In simplesamlphp
1.3
Low
Ecosystem: Debian
Component: simplesamlphp
FLAT-F5JFI (DSA-2330-1)
Lack of data validation In simplesamlphp
1.3
Low
Ecosystem: Debian
Component: simplesamlphp