[High] CVE-2026-46491 – SimpleSAMLphp-casserver is a CAS 1.0 and 2.0 compliant CAS server in the form of...
High CVE-2026-46491 SimpleSAMLphp-casserver is a CAS 1.0 and 2.0 compliant CAS server in the form of a SimpleSAMLphp module. Prior to version 7.0.3, simplesamlphp-module-casserver builds file paths for the file-based CAS ticket store by directly concatenating the configured ticket directory with an...