Fixed
Project:
SAML Service Provider
Version:
4.x-dev
Component:
Code
Priority:
Normal
Category:
Task
Assigned:
Unassigned
Reporter:
Created:
12 May 2026 at 23:52 UTC
Updated:
13 May 2026 at 00:05 UTC
Jump to comment: Most recent
This is a security issue in an external library.
SAML PHP Toolkit released new versions to force an upgrade to xmlseclibs, which was vulnerable to CVE-2026-32313.
New minimum versions ^3.8.2 | ^4.3.2.
None right now, but there are always more updates coming.
None.
Start within a Git clone of the project using the version control instructions.
Or, if you do not have SSH keys set up on git.drupalcode.org:
Comments
Comment #4
jproctor