Intel

AIKIDO-2026-310652

saml is vulnerable to Improper Access Control

Improper Access ControlCVE-2026-84668 Published Today

88

High Risk

This Affects:

JAVAsaml
0.0.1 - 4.618
Fixed in 4.623
Are you affected? Scan for Free

TL;DR

A constructor annotated with @DataBoundConstructor writes SAML identity provider metadata to the controller file system. Attackers able to submit certain forms can overwrite identity provider metadata with attacker-controlled content without required permission and then authenticate as arbitrary users. The fix requires Overall/Administer permission in that constructor.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range and users can submit forms that bind SAML plugin identity provider metadata configuration.

Background info

saml is vulnerable to Improper Access Control in versions 0.0.1 - 4.618.

How to fix this

Upgrade the org.jenkins-ci.plugins:saml library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform