top of page
perceptive_background_267k.jpg

OpenSlides is a free, web based presentation and assembly system for managing and projecting agenda, motions and elections of an assembly. Prior to version 4.2.…

Published:

3 February 2026 at 23:00:00

Alert date:

4 February 2026 at 22:01:55

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies, Identity & Access, Enterprise Applications

OpenSlides, a web-based presentation and assembly system, contains an authentication bypass vulnerability in versions prior to 4.2.29. The vulnerability affects users synced from external SAML identity providers, allowing attackers to bypass authentication by using the SAML username with a trivial password that works for all SAML users. This represents a critical access control flaw that could allow unauthorized access to user accounts. The issue has been patched in version 4.2.29.

Technical details

Mitigation steps:

Affected products:

OpenSlides

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page