Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
RubyGems/omniauth-saml — 3 CVEs · VulnScope
pkg:RubyGems/
omniauth-saml
3 total CVEs
CRITICAL
2
HIGH
1
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
10.0
CVE-2024-45409
The Ruby SAML library vulnerable to a SAML authentication bypass via Incorrect XPath selector
>= 2.0.0, < 2.1.2
CRITICAL
9.8
CVE-2025-25291
ruby-saml vulnerable to SAML authentication bypass due to DOCTYPE handling (parser differential)
>= 2.2.0, < 2.2.3
HIGH
7.7
CVE-2017-11430
OmniAuth-SAML authentication bypass via incorrect XML canonicalization and DOM traversal
from 0, < 1.10.0