CVE-2025-54419
Last modified
CVE-2025-54419 is a critical-severity vulnerability rated 10/10 on the CVSS scale. A SAML library not dependent on any frameworks that runs in Node. In version 5.0.1, Node-SAML loads the assertion from the (unsigned) original response document. EPSS estimates a 0.36% chance of exploitation in the next 30 days.
Description
A SAML library not dependent on any frameworks that runs in Node. In version 5.0.1, Node-SAML loads the assertion from the (unsigned) original response document. This is different than the parts that are verified when checking signature. This allows an attacker to modify authentication details within a valid SAML assertion. For example, in one attack it is possible to remove any character from the SAML assertion username. To conduct the attack an attacker would need a validly signed document from the identity provider (IdP). This is fixed in version 5.1.0.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-54419?
How severe is CVE-2025-54419?
How do I fix CVE-2025-54419?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-54413skops is a Python library which helps users share and ship t…8.7
- CVE-2025-54414Anubis is a Web AI Firewall Utility that weighs the soul of …5.1
- CVE-2025-54415dag-factory is a library for Apache Airflow® to construct DA…9.1
- CVE-2025-54416tj-actions/branch-names is a Github actions repository that …9.1
- CVE-2025-54417Craft is a platform for creating digital experiences. Versio…8.8
- CVE-2025-54418CodeIgniter is a PHP full-stack web framework. A command inj…9.8
- CVE-2025-5442A vulnerability, which was classified as critical, has been …9.8
- CVE-2025-54420Rejected reason: This CVE is a duplicate of CVE-2025-8129.
- CVE-2025-54421NamelessMC is a free, easy to use & powerful website softwar…5.4
- CVE-2025-54422Sandboxie is a sandbox-based isolation software for 32-bit a…5.5
- CVE-2025-54423copyparty is a portable file server. In versions up to and i…6.1
- CVE-2025-544241Panel is a web interface and MCP Server that manages websit…9.8
Are you affected by CVE-2025-54419?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
