package: sympa
tags: security

A flaw was discovered in the generic SSO functionality of Sympa web interface
in a specific setting that could allow an attacker to bypass authentication
and log in with an arbitrary e-mail address.

Reference:

https://www.sympa.community/security/2024-001.html

Regards
  Racke

--
Automation expert - Ansible and friends
Linux administrator & Debian maintainer
Perl Dancer & conference hopper

Reply via email to