IntroductionIn this blog post, we will analyze CVE-2024-45409, a critical vulnerability impacting Ruby-SAML, OmniAuth-SAML libraries, which effectively affects GitLab. This vulnerability allows an attacker to bypass SAML authentication mechanisms and gain unauthorized access by exploiting a flaw in how SAML responses are handled. The issue arises due to weaknesses
ProjectDiscovery is a California-based cybersecurity platform that provides solutions such as asset management, collaboration and vulnerability detection for enterprises.