CyberRota Analysis
AI-GeneratedVaultwarden versions prior to 1.36.0 are vulnerable to a security flaw that allows unauthorized users to enumerate organizations and abuse the authentication workflow by obtaining valid pre-validation JWTs using arbitrary email addresses. This could lead to unauthorized access to sensitive organization-related information. Organizations using Vaultwarden should prioritize upgrading to version 1.36.0 to mitigate this risk.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.36.0, Vaultwarden's SSO discovery and pre-validation flow returned organization-related SSO metadata including organizationIdentifier values for arbitrary email addresses and allowed a valid pre-validation JWT to be obtained with only the discovered identifier, enabling SSO-enabled organization enumeration and authentication workflow abuse. This issue is fixed in version 1.36.0.