Passport-wsfed-saml2 allows SAML Authentication Bypass via Attribute Smuggling
High severity
GitHub Reviewed
Published
May 6, 2025
in
auth0/passport-wsfed-saml2
•
Updated May 7, 2025
Description
Published by the National Vulnerability Database
May 6, 2025
Published to the GitHub Advisory Database
May 6, 2025
Reviewed
May 6, 2025
Last updated
May 7, 2025
Overview
This vulnerability allows an attacker to impersonate any user during SAML authentication by tampering with a valid SAML response. This can be done by adding attributes to the response.
Am I Affected?
You are affected by this SAML Attribute Smuggling vulnerability if you are using
passport-wsfed-saml2
version 4.6.3 or below, specifically under the following conditions:passport-wsfed-saml2
,Fix
Upgrade to v4.6.4 or greater.
References