SimpleSAMLphp casserver FileSystemTicketStore path traversal allows out-of-ticket-directory read/unserialize and conditional deletion
High severity
GitHub Reviewed
Published
May 14, 2026
in
simplesamlphp/simplesamlphp-module-casserver
•
Updated Jun 10, 2026
Give feedback on Dependabot alerts