OSV 1.4.0 · github-reviewed · 修改于 2023-08-09 00:12
发布时间
2019-07-31 12:22
GitHub 审查时间
2019-07-31 11:49
NVD 发布时间
2019-07-26 20:15
源文件
advisories/github-reviewed/2019/07/GHSA-qpxp-5j56-gg3x/GHSA-qpxp-5j56-gg3x.json
Zendesk Samlr before 2.6.2 allows an XML nodes comment attack such as a name_id node with [email protected] followed by <!---->. and then the attacker's domain name.