Dex is a federated OpenID Connect provider written in Go. In Dex before version 2.27.0 there is a critical set of vulnerabilities which impacts users leveraging the SAML connector. The vulnerabilities enables potential signature bypass due to issues with XML encoding in the underlying Go library. The vulnerabilities have been addressed in version 2.27.0 by using the xml-roundtrip-validator from Mattermost (see related references).
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:NLinuxfoundation Dex
APPLinuxfoundation< 2.27.0
Related vulnerabilities
Kradzież kodu autoryzacji OAuth w Dex (OpenID Connect) — dostęp do tokenów
Pominięcie uwierzytelniania SAML w bibliotece Dex (dexidp/dex)
Dex is an identity service that uses OpenID Connect to drive authentication for other apps. Dex 2.37.0 serves ...
containerd CRI plugin: brak walidacji etykiet obrazu umożliwia RCE na hoście
CloudNativePG: eskalacja uprawnień do superużytkownika PostgreSQL przez metrics exporter