Package impact
npm / passport-wsfed-saml2
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2017-16897 | high | 8.1 | 8.1 | 9y ago | passport-wsfed-saml2 vulnerable to Signature Bypass in SAML2 token | |||
| CVE-2025-46573 | unknown | — | — | 1y ago | Passport-wsfed-saml2 allows SAML Authentication Bypass via Attribute Smuggling | |||
| CVE-2025-46572 | unknown | — | — | 1y ago | Passport-wsfed-saml2 allows SAML Authentication Bypass via Signature Wrapping | |||
| CVE-2022-23505 | unknown | — | — | 4y ago | Authentication Bypass for passport-wsfed-saml2 |