CVE-2019-11066
Published May 10, 2019openid.php in LightOpenID through 1.3.1 allows SSRF via a crafted OpenID 2.0 assertion request using the HTTP GET method.
Vendor archive
1 CVEs tagged to vendor lightopenid_project — 1 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.
openid.php in LightOpenID through 1.3.1 allows SSRF via a crafted OpenID 2.0 assertion request using the HTTP GET method.