Description
OpenAM (OpenAM Consortium Edition) contains a vulnerability that may cause it to malfunction as a SAML IdP due to a tampered request.This issue affects OpenAM: from 14.0.0 through 14.0.1.
Product status
14.0.0 (semver)
Credits
Hiromu Miyazaki (OSSTech Corporation)
References
openam-jp.github.io/Advisories/CVE-2025-8662/