Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-46705


A denial of service vulnerability exists in the g_assert_not_reached functionality of Entr'ouvert Lasso 2.5.1 and 2.8.2. A specially crafted SAML assertion response can lead to a denial of service. An attacker can send a malformed SAML response to trigger this vulnerability.


Published

2025-11-05T15:15:38.530

Last Modified

2025-11-07T20:02:36.453

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-617

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application entrouvert lasso 2.5.1 Yes
Application entrouvert lasso 2.8.2 Yes

References