Intel

AIKIDO-2026-458467

spring-security-saml2-service-provider is vulnerable to Deserialization of Untrusted Data

Deserialization of Untrusted DataCVE-2026-40993 Published Jun 15, 2026

73

High Risk

This Affects:

JAVAspring-security-saml2-service-provider
7.0.0 - 7.0.5
Fixed in 7.0.6
Are you affected? Scan for Free

TL;DR

An attacker with write permissions to the database table managed by JdbcAssertingPartyMetadataRepository (saml2_asserting_party_metadata) may be able to store malicious serialized payloads in the columns containing the collection of verification or encryption credentials (verification_credentials and encryption_credentials, respectively).

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

spring-security-saml2-service-provider is vulnerable to Deserialization of Untrusted Data in versions 7.0.0 - 7.0.5.

How to fix this

Upgrade the org.springframework.security:spring-security-saml2-service-provider library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform