SA-CONTRIB-2026-018: SAML SSO Reflected XSS — Script Injection on Your Login Page
3d ago · 4 min read · SA-CONTRIB-2026-018 is a critical reflected XSS in an identity-adjacent module. Attacker-controlled input reflects back into browser execution paths on SSO endpoints — the exact surfaces users trust during login. 🚨 Critical — XSS on Authentication ...
Join discussion





