### Impact Full impersonation of any principal the trusted STS could have issued an assertion for — including administrative principals when the relying party grants them via SAML claims. Affects both SAML 1.1 and SAML 2.0. #### Preconditions Relying-party service is hosted with WSFederationHttpBinding or WS2007FederationHttpBinding (or any binding that triggers FederatedSecurityTokenManager for issued-token validation), and IdentityConfiguration is wired (UseIdentityConfiguration = true). Attacker can reach the service over the network and knows the trusted STS’s public certificate (public certs are by design discoverable). ### Patches Fixed in CoreWCF v1.8.1 and v1.9.1 ### Workarounds None
Update CoreWCF.Primitives to 1.8.1; CoreWCF.Primitives to 1.9.1 if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanCoreWCF: Authentication bypass in CoreWCF SAML 1.1 / 2.0 token signature validation affects CoreWCF.Primitives (nuget), CoreWCF.Primitives (nuget). Severity is critical. ### Impact Full impersonation of any principal the trusted STS could have issued an assertion for — including administrative principals when the relying party grants them via SAML claims. Affects both SAML 1.1 and SAML 2.0. #### Preconditions Relying-party service is hosted with WSFederationHttpBinding or WS2007FederationHttpBinding (or any binding that triggers FederatedSecurityTokenManager for issued-token validation), and IdentityConfiguration is wired (UseIdentityConfiguration = true). Attacker can reach the service over the network and knows the trusted STS’s public certificate (public certs are by design discoverable). ### Patches Fixed in CoreWCF v1.8.1 and v1.9.1 ### Workarounds None
AI coding agents often install or upgrade packages automatically in nuget. A critical vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|
### Impact Full impersonation of any principal the trusted STS could have issued an assertion for — including administrative principals when the relying party grants them via SAML claims. Affects both SAML 1.1 and SAML 2.0. #### Preconditions Relying-party service is hosted with WSFederationHttpBinding or WS2007FederationHttpBinding (or any binding that triggers FederatedSecurityTokenManager for issued-token validation), and IdentityConfiguration is wired (UseIdentityConfiguration = true). Attacker can reach the service over the network and knows the trusted STS’s public certificate (public certs are by design discoverable). ### Patches Fixed in CoreWCF v1.8.1 and v1.9.1 ### Workarounds None
Update CoreWCF.Primitives to 1.8.1; CoreWCF.Primitives to 1.9.1 if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanCoreWCF: Authentication bypass in CoreWCF SAML 1.1 / 2.0 token signature validation affects CoreWCF.Primitives (nuget), CoreWCF.Primitives (nuget). Severity is critical. ### Impact Full impersonation of any principal the trusted STS could have issued an assertion for — including administrative principals when the relying party grants them via SAML claims. Affects both SAML 1.1 and SAML 2.0. #### Preconditions Relying-party service is hosted with WSFederationHttpBinding or WS2007FederationHttpBinding (or any binding that triggers FederatedSecurityTokenManager for issued-token validation), and IdentityConfiguration is wired (UseIdentityConfiguration = true). Attacker can reach the service over the network and knows the trusted STS’s public certificate (public certs are by design discoverable). ### Patches Fixed in CoreWCF v1.8.1 and v1.9.1 ### Workarounds None
AI coding agents often install or upgrade packages automatically in nuget. A critical vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|
| CoreWCF.Primitivesnuget | <1.8.1 | 1.8.1 |
|---|
| CoreWCF.Primitivesnuget | >=1.9.0,<1.9.1 | 1.9.1 |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by GitHub Security Advisories (ghsa).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard| CoreWCF.Primitivesnuget | <1.8.1 | 1.8.1 |
|---|
| CoreWCF.Primitivesnuget | >=1.9.0,<1.9.1 | 1.9.1 |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by GitHub Security Advisories (ghsa).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard