Impact
The Jenkins SAML Plugin contains a flaw in its Stapler data binding that permits an attacker to overwrite the SAML identity provider metadata file. By substituting the file with attacker controlled content, the attacker can authenticate as any user, effectively bypassing proper identity verification and enabling arbitrary access.
Affected Systems
The vulnerability affects Jenkins SAML Plugin versions up to 4.618.v441a_27fa_46d2. Any Jenkins instance using these plugin versions is vulnerable.
Risk and Exploitability
The CVSS score of 8.8 indicates high severity, while no EPSS data and a lack of KEV listing leave the exploitation probability uncertain. The likely attack vector involves the Jenkins web interface where a malicious user can submit crafted Stapler data to overwrite the metadata file, providing authentication bypass without needing elevated privileges.
OpenCVE Enrichment