Problem/Motivation

This is a security issue in an external library.

SAML PHP Toolkit released new versions to force an upgrade to xmlseclibs, which was vulnerable to CVE-2026-32313.

Proposed resolution

New minimum versions ^3.8.2 | ^4.3.2.

Remaining tasks

None right now, but there are always more updates coming.

UI/API/Data model changes

None.

Issue fork saml_sp-3589855

Command icon Show commands

Start within a Git clone of the project using the version control instructions.

Or, if you do not have SSH keys set up on git.drupalcode.org:

Comments

jproctor created an issue. See original summary.

  • jproctor committed f733dbde on 4.x
    task: #3589855 Update SAML PHP Toolkit
    
    By: jproctor
    
jproctor’s picture

Status: Needs review » Fixed

Now that this issue is closed, review the contribution record.

As a contributor, attribute any organization that helped you, or if you volunteered your own time.

Maintainers, credit people who helped resolve this issue.