Skip to content

v1.3.2

Compare
Choose a tag to compare
@sredxny sredxny released this 23 Mar 01:33
· 80 commits to master since this release
96ba2db

What's changed?

  • Fixed CVE-2021-3538 in which the library that generated uuid's are predictable.
  • Fixed CVE-2022-41912 in which the crewjam/saml go library is vulnerable to an authentication bypass when processing SAML responses containing multiple Assertion elements.