logo

Database

Reflected cross-site scripting (XSS) In simplesamlphp/simplesamlphp

Description

SimpleSAMLphp XSS Vulnerability The consentAdmin module in SimpleSAMLphp through 1.14.15 is vulnerable to a Cross-Site Scripting attack, allowing an attacker to craft links that could execute arbitrary JavaScript code on the victim's web browser.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Component
Affected version
Patched versions