SAML Integration Flaw in Rocket.Chat Affects User Session Security
CVE-2026-45677
What is CVE-2026-45677?
Rocket.Chat, a customizable open-source communications platform, has a vulnerability in its SAML integration. Prior to certain versions, the platform fails to verify signatures on LogoutRequest messages. An unauthenticated attacker can exploit this by crafting an unsigned LogoutRequest, which can lead to the unauthorized termination of user sessions if the attacker knows the target user's SAML NameID, usually their email. This vulnerability poses significant risks, as it allows attackers to disrupt the services for SAML-authenticated users without requiring authentication, making it possible to target accounts systematically. This issue has been addressed in subsequent updates.
Affected Version(s)
Rocket.Chat >= 8.5.0-rc.0, < 8.5.0 < 8.5.0-rc.0, 8.5.0
Rocket.Chat >= 8.4.0-rc.0, < 8.4.1 < 8.4.0-rc.0, 8.4.1
Rocket.Chat >= 8.3.0-rc.0, < 8.3.3 < 8.3.0-rc.0, 8.3.3
