GHSA-wjmp-wphq-jvqf
Passport-wsfed-saml2 allows SAML Authentication Bypass via Signature Wrapping
Quick fix
GHSA-wjmp-wphq-jvqf — passport-wsfed-saml2: upgrade to the fixed version with the command below.
npm install passport-wsfed-saml2@4.6.4Details
### Overview This vulnerability allows an attacker to impersonate any user during SAML authentication by crafting a SAMLResponse. This can be done by using a valid SAML object that was signed by the configured IdP.
### Am I Affected? You are affected by this SAML Signature Wrapping vulnerability if you are using `passport-wsfed-saml2` version 4.6.3 or below, specifically under the following conditions: 1. The service provider is using `passport-wsfed-saml2`, 2. A valid SAML document signed by the Identity Provider can be obtained.
### Fix Upgrade to v4.6.4 or greater.
Are you affected?
Enter the version of the package you're using.
Affected packages
3.0.5Fixed in: 4.6.4npm install passport-wsfed-saml2@4.6.4