VYPR

Passport Saml Encrypted

by Krakenjs

CVEs (2)

  • CVE-2026-89042CriSep 10, 2026
    risk 0.59cvss 9.1epss

    passport-saml-encrypted through 0.1.13 makes SAML signature verification conditional on an optional cert option, allowing attackers to bypass authentication by submitting unsigned SAML responses. Attackers can post forged SAML responses with arbitrary NameID and attributes to…

  • CVE-2026-89043HigSep 10, 2026
    risk 0.48cvss 7.4epss

    passport-saml-encrypted through 0.1.13 contains an XML signature wrapping vulnerability where signature verification and assertion extraction use independent XPath lookups with no cross-validation. Attackers holding any validly signed SAML message can prepend a forged unsigned…