© 2025-2026 PySpect
First version without a known vulnerability: 6.5.0
PySAML2 XML external entity attack
Fixed in: 4.5.0, 6e09a25d9b4b7aa7a506853210a9a14100b8bc9b
Improper Verification of Cryptographic Signature in PySAML2
Fixed in: 6.5.0, 46578df0695269a16f1c94171f1429873f90ed99
SAML XML Signature wrapping in PySAML2
Fixed in: 6.5.0, 1d8fd268f5bf887480a403a7a5ef8f048157cc14
Improper Verification of Cryptographic Signature in PySAML2
Fixed in: 5.0.0, f27c7e7a7010f83380566a219fd6a290a00f2b6e, 5e9d5acbcd8ae45c4e736ac521fd2df5b1c62e25
Pysaml2 improperly initializes encryption vector
Fixed in: 4.6.0
Pysaml2 does not sanitize XML responses
Fixed in: 4.5.0, 6e09a25d9b4b7aa7a506853210a9a14100b8bc9b
pysaml2 Improper Authentication vulnerability
Fixed in: 4.5.0