CVE detail
CVE-2025-25293
ruby-saml provides security assertion markup language (SAML) single sign-on (SSO) for Ruby. Prior to versions 1.12.4 and 1.18.0, ruby-saml is susceptible to remote Denial of Service (DoS) with compressed SAML responses. ruby-saml uses zlib to decompress SAML responses in case they're compressed. It is possible to bypass the message size check with a compressed assertion since the message size is checked before inflation and not after. This issue may lead to remote Denial of Service (DoS). Versions 1.12.4 and 1.18.0 fix the issue.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 24.9 · diversity 16.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
11 source links · newest first
- https://security.netapp.com/advisory/ntap-20250314-0008/security.netapp.com
No excerpt available.
Vendor Advisorysecurity.netapp.comMar 12, 2025, 9:15 PM No excerpt available.
Vendor Advisorylists.debian.orgMar 12, 2025, 9:15 PM- https://securitylab.github.com/advisories/GHSL-2024-355_ruby-samlsecuritylab.github.com
No excerpt available.
Exploitsecuritylab.github.comMar 12, 2025, 9:15 PM No excerpt available.
Exploitgithub.comMar 12, 2025, 9:15 PMNo excerpt available.
Exploitgithub.comMar 12, 2025, 9:15 PMNo excerpt available.
Exploitgithub.comMar 12, 2025, 9:15 PMNo excerpt available.
Exploitgithub.comMar 12, 2025, 9:15 PM- https://github.com/SAML-Toolkits/ruby-saml/commit/e2da4c6dae7dc01a4d9cd221395140a67e2b3eb1github.com
No excerpt available.
Exploitgithub.comMar 12, 2025, 9:15 PM - https://github.com/SAML-Toolkits/ruby-saml/commit/acac9e9cc0b9a507882c614f25d41f8b47be349agithub.com
No excerpt available.
Exploitgithub.comMar 12, 2025, 9:15 PM No excerpt available.
Exploitgithub.blogMar 12, 2025, 9:15 PMNo excerpt available.
Vendor Advisoryabout.gitlab.comMar 12, 2025, 9:15 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2025-25292CVSS 9.3 · Critical
ruby-saml provides security assertion markup language (SAML) single sign-on (SSO) for Ruby. An authentication bypass vulnerability was found in ruby-saml prior to versions 1.12.4…
- CVE-2025-25291CVSS 9.3 · Critical
ruby-saml provides security assertion markup language (SAML) single sign-on (SSO) for Ruby. An authentication bypass vulnerability was found in ruby-saml prior to versions 1.12.4…
- CVE-2024-45409CVSS 10.0 · Critical
The Ruby SAML library is for implementing the client side of a SAML authorization. Ruby-SAML in <= 12.2 and 1.13.0 <= 1.16.0 does not properly verify the signature of the SAML Res…
- CVE-2026-59942CVSS 6.3 · Medium
Dompdf is an HTML to PDF converter for PHP. Versions 3.15 and prior are vulnerable to a Denial of Service (DoS) attack via resource exhaustion. An attacker can crash the PHP proce…
- CVE-2026-59941CVSS 6.3 · Medium
Dompdf is an HTML to PDF converter for PHP. Versions 3.15 and prior accept a BMP image and generates a PDF-compatible PNG based only on its declared header dimensions and never bo…
- CVE-2026-14981CVSS 7.5 · High
IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 are affected by a denial of service vulnerability in the HTT…