Simplesamlphp Authentication Project maintains a specialized PHP-based SAML authentication library used for single sign-on and federated identity implementations across education and enterprise deployments. The vendor's observed vulnerability exposure centers on cross-site scripting weaknesses in the authentication module, reflecting input-handling risks inherent to web-facing identity services. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Simplesamlphp Authentication Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-38320MEDIUM The simpleSAMLphp Authentication WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER["PHP_SELF"] value in the ~/simplesamlphp-authenticatio | Sep 9, 2021 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Simplesamlphp Authentication Project.
Media articles that mention a CVE ID that affects a product developed by Simplesamlphp Authentication Project — matched by CVE ID, not by vendor name.