CVE

CVE-2021-28963

CVE-2021-28963

Shibboleth Service Provider before 3.2.1 allows content injection because template generation uses attacker-controlled parameters.

Source: CVE-2021-28963

Exit mobile version