VU#780781: Casdoor contains multiple authentication bypass and access management vulnerabilities
2026-05-28T20:52:22Z•3636f4b6ab9fcb4415bab4fbb44da4cbf58836398a034516f066f06e94fb2ea2
account-takeoverarbitrary-file-writeauthentication-bypasscasdoorcopy-faildeserializationdilldirty-fragdnsmasqiamlinux-kernellocal-privilege-escalationmfa-bypasspath-traversalpicklerceremote-code-executionsamlsglangunauthenticated-config-modificationvulnerability-feed
What happened
This feed summarizes multiple high-impact vulnerabilities across identity/access management, Linux kernel, DNS, and ML-serving software. Key issues include multiple Casdoor IAM flaws (SAML certificate validation allowing forged assertions, MFA bypass via social-login binding, unverified email binding/account takeover, and an authenticated arbitrary file-write/path traversal in the Local File System provider), a Linux kernel fragmentation chaining vulnerability (“Dirty Frag”) and other kernel local privilege escalations (including Copy Fail), several remote code execution and path traversal/des
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- certcc_vulnotes
- Record identifier
- 3636f4b6ab9fcb4415bab4fbb44da4cbf58836398a034516f066f06e94fb2ea2
- Enrichment time
- 2026-05-28T20:52:22Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.