SAML Integration Flaw in Rocket.Chat Affects User Session Security
CVE-2026-45677

8.7HIGH

Key Information:

Vendor

Rocketchat

Vendor
CVE Published:
24 June 2026

What is CVE-2026-45677?

Rocket.Chat, a customizable open-source communications platform, has a vulnerability in its SAML integration. Prior to certain versions, the platform fails to verify signatures on LogoutRequest messages. An unauthenticated attacker can exploit this by crafting an unsigned LogoutRequest, which can lead to the unauthorized termination of user sessions if the attacker knows the target user's SAML NameID, usually their email. This vulnerability poses significant risks, as it allows attackers to disrupt the services for SAML-authenticated users without requiring authentication, making it possible to target accounts systematically. This issue has been addressed in subsequent updates.

Affected Version(s)

Rocket.Chat >= 8.5.0-rc.0, < 8.5.0 < 8.5.0-rc.0, 8.5.0

Rocket.Chat >= 8.4.0-rc.0, < 8.4.1 < 8.4.0-rc.0, 8.4.1

Rocket.Chat >= 8.3.0-rc.0, < 8.3.3 < 8.3.0-rc.0, 8.3.3

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.