CVE-2022-45597
ComponentSpace SAML Missing SSL Certificate Validation
Halo Surface Signal: 5 out of 5 — more likely to be public-facing.
A vulnerability in ComponentSpace SAML involves missing SSL certificate validation, which could allow an attacker to impersonate trusted parties or intercept sensitive information. The vendor does not consider this a vulnerability, stating that certificates are exchanged in a controlled manner. However, this technology