Jenkins SAML Plugin 4.583.vc68232f7018a_ and earlier does not implement a replay cache.
This allows attackers able to obtain information about the SAML authentication flow between a user’s web browser and Jenkins to replay those requests, authenticating to Jenkins as that user.
SAML Plugin 4.583.585.v22ccc1139f55 implements a replay cache that rejects replayed requests.
{
"cwe_ids": [
"CWE-294"
],
"github_reviewed": true,
"github_reviewed_at": "2025-10-29T22:03:43Z",
"nvd_published_at": "2025-10-29T14:15:57Z",
"severity": "HIGH"
}