onelogin
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 14 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from January 23, 2017 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →ruby-saml Libxml2 Canonicalization errors can bypass Digest/Signature validation
ruby-saml has a SAML authentication bypass due to namespace handling (parser differential)
OneLogin AD Connector Log S3 Bucket Hijack Leading to Cross-Tenant Data Leakage
OneLogin AD Connector JWT Authentication Bypass via Exposed Signing Key
OneLogin AD Connector API Credential and Signing Key Exposure
GHSL-2024-329_GHSL-2024-330: Authentication bypasses in ruby-saml - CVE-2025-25291, CVE-2025-25292
GHSL-2024-355: DoS in ruby-saml - CVE-2025-25293
GHSL-2024-329_GHSL-2024-330: Authentication bypasses in ruby-saml - CVE-2025-25291, CVE-2025-25292
The Ruby SAML library vulnerable to a SAML authentication bypass via Incorrect XPath selector
Monitor onelogin in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.