Tag: SAML

Cybersecurity Threat Advisory: Critical authentication bypass in ruby-saml
Cybersecurity Threat Advisory: Critical authentication bypass in ruby-saml
CVE-2025-25292 and CVE-2025-25291 are related to an authentication bypass vulnerability found in ruby-saml due to parser differential handling. The flaws carry a high CVSS score of 8.8. The vulnerability exists in the way ReXML and Nokogiri parse XML differently. The...

Cybersecurity Threat Advisory: Critical GitLab SAML vulnerability
Cybersecurity Threat Advisory: Critical GitLab SAML vulnerability
A vulnerability identified as CVE-2024-45409 has been found in GitLab’s Ruby-SAML library. This flaw stems from the improper validation of Security Assertion Markup Language (SAML) responses. Continue reading this Cybersecurity Threat Advisory to secure your environment. What is the threat?...