NA
CVSSv3

CVE-2025-25291

CVSSv4: 8.8 | CVSSv3: NA | CVSSv2: NA | VMScore: 980 | EPSS: 0.0113 | KEV: Not Included
Published: 12/03/2025 Updated: 15/03/2025

Vulnerability Summary

Authentication Bypass Vulnerability in ruby-saml SAML SSO Library via XML Parsing

ruby-saml provides security assertion markup language (SAML) single sign-on (SSO) for Ruby. An authentication bypass vulnerability was found in ruby-saml prior to versions 1.12.4 and 1.18.0 due to a parser differential. ReXML and Nokogiri parse XML differently; the parsers can generate entirely different document structures from the same XML input. That allows an malicious user to be able to execute a Signature Wrapping attack. This issue may lead to authentication bypass. Versions 1.12.4 and 1.18.0 fix the issue.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

saml-toolkits ruby-saml

Vendor Advisories

Debian Bug report logs - #1100441 ruby-saml: CVE-2025-25291 CVE-2025-25292 CVE-2025-25293 Package: src:ruby-saml; Maintainer for src:ruby-saml is Debian Ruby Team <pkg-ruby-extras-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Thu, 13 Mar 2025 21:57:02 UTC Severity: ...

Recent Articles

GitLab patches critical authentication bypass vulnerabilities
BleepingComputer • Bill Toulas • 13 Mar 2025

GitLab patches critical authentication bypass vulnerabilities By Bill Toulas March 13, 2025 12:13 PM 0 GitLab released security updates for Community Edition (CE) and Enterprise Edition (EE), fixing nine vulnerabilities, among which two critical severity ruby-saml library authentication bypass flaws. All flaws were addressed in GitLab CE/EE versions 17.7.7, 17.8.5, and 17.9.2, while all versions before those are vulnerable.  GitLab.com is already patched, and GitLab Dedicated customers will...