logo

Ruby Library Security Update Advisory (CVE-2024-45409)

ID: e991793b-0e99-5a59-8cdd-176187c7339c

STIX ID: report--e991793b-0e99-5a59-8cdd-176187c7339c

Feed Name: ASEC

Threat Score
70/100

Date Published: 2024-09-18

Date Updated: 2026-04-26

Author: ATCP

...
...

**Ruby-SAML CVE-2024-45409:** A signature-validation bypass in Ruby-SAML could allow an unauthenticated attacker with access to a signed SAML document to forge SAML responses/assertions; affected versions are listed and patches are available (1.12.3 and 1.17.0).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.