VU#780781: Casdoor contains multiple authentication bypass and access management vulnerabilities

2026-05-28T20:52:22Z3636f4b6ab9fcb4415bab4fbb44da4cbf58836398a034516f066f06e94fb2ea2
account-takeoverarbitrary-file-writeauthentication-bypasscasdoorcopy-faildeserializationdilldirty-fragdnsmasqiamlinux-kernellocal-privilege-escalationmfa-bypasspath-traversalpicklerceremote-code-executionsamlsglangunauthenticated-config-modificationvulnerability-feed

What happened

This feed summarizes multiple high-impact vulnerabilities across identity/access management, Linux kernel, DNS, and ML-serving software. Key issues include multiple Casdoor IAM flaws (SAML certificate validation allowing forged assertions, MFA bypass via social-login binding, unverified email binding/account takeover, and an authenticated arbitrary file-write/path traversal in the Local File System provider), a Linux kernel fragmentation chaining vulnerability (“Dirty Frag”) and other kernel local privilege escalations (including Copy Fail), several remote code execution and path traversal/des

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
certcc_vulnotes
Record identifier
3636f4b6ab9fcb4415bab4fbb44da4cbf58836398a034516f066f06e94fb2ea2
Enrichment time
2026-05-28T20:52:22Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · VU#780781: Casdoor contains multiple authentication bypass and access management vulnerabilities · Baitaphish