We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-47949

samlify SAML Signature Wrapping attack



Description

samlify is a Node.js library for SAML single sign-on. A Signature Wrapping attack has been found in samlify prior to version 2.10.0, allowing an attacker to forge a SAML Response to authenticate as any user. An attacker would need a signed XML document by the identity provider. Version 2.10.0 fixes the issue.

Reserved 2025-05-14 | Published 2025-05-19 | Updated 2025-05-20 | Assigner GitHub_M


CRITICAL: 9.9CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N

Problem types

CWE-347: Improper Verification of Cryptographic Signature

Product status

< 2.10.0
affected

References

github.com/...amlify/security/advisories/GHSA-r683-v43c-6xqv

github.com/...ommit/115679acd89f0a37ea3ebd8fff7db54fca3e8af3

cve.org (CVE-2025-47949)

nvd.nist.gov (CVE-2025-47949)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-47949

Support options

Helpdesk Chat, Email, Knowledgebase