CVE-2022-40152 is a vulnerability affecting com.fasterxml.woodstox:woodstox-core, which is a transitive dependency of java-saml via org.apache.santuario:xmlsec. Requesting that you upgrade the dependency org.apache.santuario:xmlsec to 3.0.2+ or 2.3.3+ when they are released. It appears both will include upgraded versions of woodstox-core in which this vulnerability is fixed. Thank you!