VendorsSamlify Projectsamlifyall versions
Vulnerabilities

Samlify Project Samlify

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2025-47949
samlify SAML Signature Wrapping attack
Published 2025-05-19 · Analyzed
9.9EPSS 0.005
CVE-2026-46490
samlify: XML Injection in AttributeValue Allows Privilege Escalation in Signed SAML Assertions
Published 2026-06-08 · Analyzed
8.8EPSS 0.006
CVE-2017-1000452
An XML Signature Wrapping vulnerability exists in Samlify 2.2.0 and earlier, and in predecessor Express-saml2 which could allow attackers to impersonate arbitrary users.
Published 2018-01-02 · Modified
7.5EPSS 0.014