Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-15556

Опубликовано: 11 авг. 2026
Источник: redhat
CVSS3: 8.1
EPSS Низкий

Описание

A flaw was found in Picketlink's SP signature validation; a SAML response containing zero assertion elements matching the signature check can allow an attacker to forge a SAML response and auth as any principal with any roles on the protected application.

Отчет

Red Hat JBoss EAP 8.x is not affected. The vulnerable components (picketlink-federation, picketlink-common) are not shipped in EAP 8.x. The org/picketlink/ module path does not exist. The only PicketLink-related artifact in EAP 8.1 is wildfly-picketlink-8.1.1.GA-redhat-00012.jar — a WildFly subsystem extension that provides the migrate CLI operation for EAP 7→8 upgrades. This JAR contains no SAML processing code, no signature validation logic, and has no module dependency on org.picketlink.federation. The PicketLink SAML SP code path is entirely absent from EAP 8.x.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat JBoss Enterprise Application Platform 8picketlink-federationNot affected
Red Hat JBoss Enterprise Application Platform Expansion Packpicketlink-federationNot affected
Red Hat JBoss Enterprise Application Platform 7.4.25picketlink-federationFixedRHSA-2026:5380611.08.2026
Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7eap7-activemq-artemisFixedRHSA-2026:5364411.08.2026
Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7eap7-glassfish-jsfFixedRHSA-2026:5364411.08.2026
Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7eap7-ironjacamarFixedRHSA-2026:5364411.08.2026
Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7eap7-jackson-annotationsFixedRHSA-2026:5364411.08.2026
Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7eap7-jackson-coreFixedRHSA-2026:5364411.08.2026
Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7eap7-jackson-databindFixedRHSA-2026:5364411.08.2026
Red Hat JBoss Enterprise Application Platform 7.4 ELS on RHEL 7eap7-jackson-jaxrs-providersFixedRHSA-2026:5364411.08.2026

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-347
https://bugzilla.redhat.com/show_bug.cgi?id=2483121picketlink-federation: picketlink SAML 2.0 auth bypass via missing assertions

EPSS

Процентиль: 13%
0.00218
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
7 дней назад

A flaw was found in Picketlink's SP signature validation; a SAML response containing zero assertion elements matching the signature check can allow an attacker to forge a SAML response and auth as any principal with any roles on the protected application.

CVSS3: 8.1
github
7 дней назад

A flaw was found in Picketlink's SP signature validation; a SAML response containing zero assertion elements matching the signature check can allow an attacker to forge a SAML response and auth as any principal with any roles on the protected application.

EPSS

Процентиль: 13%
0.00218
Низкий

8.1 High

CVSS3