criticalCVSS 9.1Vulnerability

CVE-2026-49454

## Summary Relyra `1.0.0` and `1.1.0` accept forged SAML signatures because `SignatureValue` was not cryptographically verified before the library returned a successful authentication result. ## Details In `1.0.0` and `1.1.0`, the XMLDSig trust boundary was incomplete. `:public_key.verify` over the exclusive-C14N canonicalized `SignedInfo` was not performed against the configured IdP certificate's public key, `DigestValue` was not recomputed over the canonicalized referenced element, and `canonicalize/2` remained an unused passthrough in the signature-verification path. The result was a structure-only acceptance path where document shape and trust-source rejection could succeed without proving the signature bytes. ## Impact A forged `SignatureValue` carrying an attacker-controlled `NameID` can be accepted as `{:ok}`. Any relying-party application using Relyra `1.0.0` or `1.1.0` can be logged into as an arbitrary user if it trusts the affected response path. ## Patches Relyra `1.2.0` closes the gap with real exclusive-C14N canonicalization, `:public_key.verify` against the configured IdP certificate's public key, and a constant-time `DigestValue` recompute/compare bound to the exact consumed node on both `verify/4` and `verify_metadata_root/4`. ## Workarounds There is no safe configuration of `1.0.0` or `1.1.0`. Upgrade to `1.2.0` or later. ## Resources - Fix commit `2e45689` (wire real XMLDSig crypto into the candidate arm) - Fix commit `8910200` (close metadata trust bypass, pin over DER) - Regression proof: `test/security/xml/adversarial_crypto_test.exs`, `test/relyra/metadata/auto_refresh_test.exs`, `test/security/ci_gate_integrity_test.exs`

Properties

severity
critical
summary
Relyra SAML SignatureValue not cryptographically verified -> authentication bypass
epss_score
0.00226
cvss_score
9.1
ghsa_published
2026-06-26T21:05:13Z
source_url
https://github.com/advisories/GHSA-jv46-xfwm-36j7
ghsa_updated
2026-06-26T21:05:15Z
ghsa_id
GHSA-jv46-xfwm-36j7
cve_id
CVE-2026-49454
cvss_vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
is_ghsa_only
false
epss_percentile
0.13291

Related Entities (6)

ENRICHED_BY (1)

[Source]FIRST EPSS

REPORTED_BY (1)

[Source]GitHub Advisory Database

VULNERABLE_TO (1)

[Software]erlang/relyra

AFFECTS (1)

[Software]erlang/relyra

HAS_WEAKNESS (2)

[Weakness]Improper Verification of Cryptographic Signature
[Weakness]Improper Authentication

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-49454 (CVSS 9.1) — Ninja Signal Threat Intelligence | Ninja Signal