All 3 CVE vulnerabilities found in passport-wsfed-saml2, with AI-generated Chinese analysis, references, and POCs.
Vendor: auth0
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2025-46573 | passport-wsfed-saml2 Has SAML Authentication Bypass via Attribute Smuggling CWE-287 | 7.4AI | HighAI | 2025-05-06 |
| CVE-2025-46572 | passport-wsfed-saml2 Has SAML Authentication Bypass via Signature Wrapping CWE-287 | 7.4AI | HighAI | 2025-05-06 |
| CVE-2022-23505 | Passport-wsfed-saml2 vulnerable to Authentication Bypass for WSFed authentication CWE-287 | 5.3 | Medium | 2022-12-13 |
All 3 known CVE vulnerabilities affecting passport-wsfed-saml2 with full Chinese analysis, references, and POCs where available.