>= 1.10, < 1.10.3
HIGH8.7CVE-2026-49283SimpleSAMLphp HTTP-Artifact TLS validator confusion allows cross-IdP authentication bypass >= 6.0.0, < 6.2.1
from 0, < 4.17.0
HIGH8.3SimpleSAMLphp SAML2 has an XXE in parsing SAML messages
from 0, < 4.6.14
HIGH8.1simplesamlphp - security update
from 0, < 1.10.6
HIGH7.5SimpleSAMLphp has Possible DoS via XPath Transform
from 0, < 4.20.3
HIGH7.5Validation of SignedInfo
>= 5.0.0-alpha.12, < 5.0.0-alpha.13
HIGH7.5SimpleSAMLphp SAML2 library Regular Expression Denial of Service vulnerability
from 0, < 1.10.4
HIGH7.5SimpleSAMLphp Improper Verification of Cryptographic Signature
from 0, < 1.10.5