rootpwn

medium · CVSS v3 6.1 · CVSS v4 5.1

CVE-2026-105116

OpenAM before 16.1.3 contains a latent cross-site scripting defect that places the SAML message, relay state and target …

Description

OpenAM before 16.1.3 contains a latent cross-site scripting defect that places the SAML message, relay state and target URL unencoded into the load-balancer cookie bounce auto-submit page. If reachable with cookieHashRedirectEnabled set, crafted requests could execute script in the OpenAM origin, though an unrelated HTTP 500 failure prevents exploitation in released versions.

Scores

Severity
medium
CVSS v2
6.4
CVSS v3
6.1
CVSS v4
5.1
EPSS
—

← All CVEs