Skip to content

Fixes CVE-2025-27773. #879

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 1 commit into from
Mar 31, 2025

Conversation

juancs
Copy link
Contributor

@juancs juancs commented Mar 28, 2025

It tries to fix cve-2025-27773 in moodle_39_STABLE branch by patching the saml2 library the way it's done officially:

simplesamlphp/saml2@226d10c

Copy link
Contributor

@jay-oswald jay-oswald left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good, tests are not brought over, but they do not exist in the vendor folder to even bring them across

@brendanheywood brendanheywood merged commit ae70bb9 into catalyst:MOODLE_39_STABLE Mar 31, 2025
13 of 19 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants