CVE-2026-3217
Improper Neutralization of Input During Web Page Generation (“Cross-site Scripting”) vulnerability in Drupal SAML SSO – Service Provider allows Cross-Site Scripting (XSS).This issue affects SAML SSO – Service Provider: from 0.0.0 before 3.1.3.
More information : https://www.drupal.org/sa-contrib-2026-018
