Skip to content

Clarify vuln is SAML only for critical patch

Adil Farrukh requested to merge adil.farrukh-master-patch-15493 into master

The recent critical patch release fixed vulnerabilities within ruby-saml and omniauth-saml. We list out the fix details, possible mitigations and detections, however it's important to note that users of LDAP, or other authentication mechanisms aren't affected.

Merge request reports

Loading