CVE-2026-41694

Updated on 10 Jun 2026

Severity

3.7 Low severity

Details

CVSS score
3.7
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N

Overview

About vulnerability

Since Spring Security SAML decrypts SAML Responses as well as elements of SAML LogoutRequests and LogoutResponses without requiring a valid signature, attackers may be able to craft these SAML payloads and use the Service Provider as a decryption oracle.

Details

Affected product:
Apache CXF , Apache Log4j , Spring , grails-core
Affected packages:
Spring Integration @ 5.5.19 (+2823 more)

Fixes