Olav Morken
authored
Failure to escape the user id can be exploited by a malicious IdP to run scripts in the domain of the oauth host. There is also a failure to escape data in from the OAuth registry. git-svn-id: https://simplesamlphp.googlecode.com/svn/trunk@2443 44740490-163a-0410-bde0-09ae8108e29a
Name | Last commit | Last update |
---|---|---|
attributemap | ||
bin | ||
cert | ||
config-templates | ||
dictionaries | ||
docs | ||
extra | ||
lib | ||
log | ||
metadata-templates | ||
modules | ||
schemas | ||
templates | ||
www | ||
COPYING |