PT-2026-93423 · Kong · Kong Saml Plugin

CVE-2026-14917

·

Published

2026-09-16

·

Updated

2026-09-16

CVSS v4.0

7.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Kong SAML plugin (affected versions not specified)
Description An authentication bypass exists in the Kong SAML plugin when the validate assertion signature option is explicitly set to false. In this configuration, the plugin may extract the SAML identity from an unsigned assertion and authenticate the user without verifying a valid cryptographic signature. This allows an unauthenticated remote attacker to submit a crafted SAML response to impersonate arbitrary users, including administrators.
Recommendations Ensure the validate assertion signature option is enabled to maintain cryptographic signature verification. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Authentication Bypass Using an Alternate Path or Channel

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-14917

Affected Products

Kong Saml Plugin