CVE-2018-6521: Security Misconfigurations
(updated )
The sqlauth module in SimpleSAMLphp
relies on the MySQL utf8 charset, which truncates queries upon encountering four-byte characters. There might be a scenario in which this allows remote attackers to bypass intended access restrictions.
References
Detect and mitigate CVE-2018-6521 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →