PT-2026-98187 · Pypi · Python Social Auth
CVE-2026-57175
·
Published
2026-09-24
·
Updated
2026-10-01
CVSS v3.1
6.4
Medium
| Vector | AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Python Social Auth versions prior to 5.0.0
Description
The SAML backend accepts SAML responses on the Assertion Consumer Service endpoint without verifying that they match a previously issued
AuthnRequest. This flaw allows an attacker with a valid account on a trusted Identity Provider (IdP) to link their SAML identity to a logged-in victim's local account when SAML account association is enabled. Consequently, the attacker can authenticate via SAML to gain unauthorized access to the victim's account.Recommendations
Update to version 5.0.0 or later.
Disable SAML account association for already authenticated users.
Remove the SAML backend from
SOCIAL AUTH AUTHENTICATION BACKENDS if SAML login is not required.Exploit
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Python Social Auth