[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f6CVCHgnnfGTMfYRGdrb_48N0orX-QciafsQxk0suOmo":3},{"id":4,"url_slug":5,"title":6,"description":7,"plugin_slug":8,"theme_slug":9,"affected_versions":10,"patched_in_version":11,"severity":12,"cvss_score":13,"cvss_vector":14,"vuln_type":15,"published_date":16,"updated_date":17,"references":18,"days_to_patch":20},"WF-4ac3dae6-1890-44ba-9671-84f77807ffe5-onelogin-saml-sso","onelogin-saml-sso-distributed-denial-of-service","OneLogin SAML SSO \u003C= 2.8.0 - Distributed Denial-of-Service","The OneLogin SAML SSO for WordPress is vulnerable to DDoS in versions up to, and including, 2.8.0. This is due to an XML Entity Expansion. This makes it possible for unauthenticated attackers to use XML External Entity to cause the vulnerable service to slow down and\u002For become unresponsive.","onelogin-saml-sso",null,"\u003C=2.8.0","3.0.0","high",7.5,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:N\u002FI:N\u002FA:H","Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')","2019-01-28 00:00:00","2024-01-22 19:56:02",[19],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F4ac3dae6-1890-44ba-9671-84f77807ffe5?source=api-prod",1821]