A signature verification vulnerability exists in crewjam/saml. This flaw allows an attacker to bypass SAML Authentication. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
https://security.netapp.com/advisory/ntap-20210205-0002/
https://mattermost.com/blog/coordinated-disclosure-go-xml-vulnerabilities/
https://github.com/crewjam/saml/security/advisories/GHSA-4hq8-gmxx-h6w9