CVE-2026-9090: Critical severity Casdoor Casdoor vulnerability
Casdoor versions 2.362.0 and earlier contain a vulnerability that allows an attacker to bypass authentication by supplying an arbitrary signing certificate. The buildSpCertificateStore function extracts the X.509 certificate directly from the incoming SAMLResponse instead of using the trusted pre-configured Identity Provider certificate, allowing an attacker to forge assertions signed with an attacker-controlled key.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Casdoorto a version that resolves this vulnerability.Fixed in 2.362.0
Event History
Frequently Asked Questions
What is the severity of CVE-2026-9090?
CVE-2026-9090 has a critical severity rating of 9.1.
How do I fix CVE-2026-9090?
To fix CVE-2026-9090, upgrade to Casdoor version 2.362.1 or later.
What types of systems are affected by CVE-2026-9090?
CVE-2026-9090 affects all versions of Casdoor up to and including 2.362.0.
What impact does CVE-2026-9090 have on security?
CVE-2026-9090 allows attackers to bypass authentication, leading to potential unauthorized access.
Is user interaction required to exploit CVE-2026-9090?
No, CVE-2026-9090 does not require user interaction to be exploited.