CVE Database
/

CVE-2025-64131

Back to search

CVE-2025-64131

Published: Oct 29, 2025

Modified: Nov 4, 2025

PUBLISHED

Description

Jenkins SAML Plugin 4.583.vc68232f7018a_ and earlier does not implement a replay cache, allowing attackers able to obtain information about the SAML authentication flow between a user's web browser and Jenkins to replay those requests, authenticating to Jenkins as that user.

VendorProductVersions

Jenkins Project

Jenkins SAML Plugin

affected
0 - <= 4.583.vc68232f7018a_

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now