Authentication Bypass by Capture-replay in SAML SSO - Service Provider - CVE-2026-87952
Published: September 11, 2026
Vulnerability details
The vulnerability allows a remote attacker to bypass authentication process.
The vulnerability exists due to the affected module does not sufficiently prevent reuse of previously accepted SAML assertions. A remote user can replay a valid assertion during its validity period, allowing repeated authentication attempts using the same assertion.