CVEReports
CVEReports

Automated vulnerability intelligence platform. Comprehensive reports for high-severity CVEs generated by AI.

Product

  • Home
  • Sitemap
  • RSS Feed

Company

  • About
  • Contact
  • Privacy Policy
  • Terms of Service

© 2026 CVEReports. All rights reserved.

Made with love by Amit Schendel & Alon Barad



GHSA-J8V8-G9CX-5QF4

GHSA-J8V8-G9CX-5QF4: Missing Authorization and Access Control Flaw in @better-auth/scim

Alon Barad
Alon Barad
Software Engineer

Jul 7, 2026·6 min read·26 visits

Executive Summary (TL;DR)

A missing authorization check in @better-auth/scim allows any logged-in user to regenerate tokens for personal SCIM providers, delete existing configurations, and use hijacked administrative privileges to manipulate and take over target user accounts.

An authorization bypass vulnerability in the @better-auth/scim plugin allows authenticated attackers to hijack personal SCIM providers and subsequently perform full account takeovers.

Vulnerability Overview

The @better-auth/scim plugin, part of the better-auth monorepo, provides System for Cross-domain Identity Management (SCIM) integration capabilities. This plugin exposes endpoints to manage directory synchronization, allowing applications to securely provision users and groups. The plugin differentiates between organization-scoped SCIM providers and personal (non-organizational) SCIM providers.

The vulnerability is classified under CWE-862: Missing Authorization and CWE-284: Improper Access Control. When a SCIM provider is configured without an associated organization ID, the endpoints managing token generation fail to validate that the requesting user owns or has permission to modify the provider. This allows any authenticated user within the system to interact with and alter configurations belonging to other tenants or individuals.

The attack surface is accessible via the standard HTTP endpoints registered by the SCIM plugin. Because the token generation endpoint processes requests without checking user-to-provider mappings for personal integrations, unauthorized individuals can overwrite existing providers. The downstream impact of this bypass includes complete account takeovers via administrative SCIM APIs.

Root Cause Analysis

The root cause of this vulnerability lies within the authorization middleware helper function assertSCIMProviderAccess defined in packages/scim/src/routes.ts. When a token generation request is submitted to /scim/generate-token, the system checks if a provider with the given providerId already exists. If the provider is found, it calls assertSCIMProviderAccess to verify access permissions.

The check function executes specific logic based on the presence of an organizationId. If the provider is organizational, membership and role checks are performed. However, if the provider is personal (meaning organizationId is empty or undefined), the application attempts to evaluate ownership via the userId field.

In affected versions, the scimProvider table schema does not store or enforce a userId column by default, causing provider.userId to resolve to undefined. When evaluating else if (provider.userId && provider.userId !== userId), the falsy value of provider.userId causes the entire block to be skipped. Consequently, the function returns successfully without throwing an error, indicating the user has authorization when they do not.

Code Analysis

In the vulnerable path, the /scim/generate-token handler processes requests with a schema validating providerId and an optional organizationId. The handler then queries the database schema to locate the provider:

const scimProvider = await ctx.context.adapter.findOne<SCIMProvider>({
    model: "scimProvider",
    where: [
        { field: "providerId", value: providerId },
        ...(organizationId
            ? [{ field: "organizationId", value: organizationId }]
            : []),
    ],
});

If the provider is matched, authorization checks are delegated. Below is the vulnerable implementation of assertSCIMProviderAccess in routes.ts prior to the remediation:

async function assertSCIMProviderAccess(
	ctx: GenericEndpointContext,
	userId: string,
	provider: SCIMProvider,
	requiredRole: string[],
): Promise<void> {
	if (provider.organizationId) {
		// ... organization validation logic ...
	} else if (provider.userId && provider.userId !== userId) {
		// Vulnerability: If provider.userId is undefined, this block is bypassed
		throw new APIError("FORBIDDEN", {
			message: "You must be the owner to access this provider",
		});
	}
	// Implicit return (void) results in successful access validation
}

Because the database schema did not require or populate the userId column for personal providers, the variable provider.userId evaluated to undefined. The logic assumed that any personal provider must have a valid userId string assigned to it. Because this was not enforced, the condition failed safe for the attacker rather than failing closed, resulting in complete validation avoidance.

Exploitation Methodology

An authenticated attacker with standard permissions can exploit this vulnerability to take over any personal SCIM connection. The attack is performed in several distinct phases, beginning with target discovery and concluding with administrative modification of user accounts.

First, the attacker identifies a target providerId representing an active personal SCIM configuration. They then make a direct POST request to the token generation API using their own authentication credentials:

POST /scim/generate-token HTTP/1.1
Host: vulnerable-app.local
Authorization: Bearer <attacker_session_token>
Content-Type: application/json
 
{
  "providerId": "target-personal-provider-id"
}

The server processes the request, bypasses authorization because provider.userId is absent, deletes the victim's existing SCIM provider record, and creates a new database entry associated with the same providerId. The server then returns a freshly generated administrative token to the attacker.

HTTP/1.1 201 Created
Content-Type: application/json
 
{
  "scimToken": "ZXhhbXBsZXRva2VuOnZpY3RpbS1wcm92aWRlci1pZA=="
}

Armed with this administrative token, the attacker calls the SCIM Users endpoint to modify targeted user metadata, such as replacing a victim's email address with one controlled by the attacker. This allows the attacker to complete an account takeover via standard password-reset or magic-link flows.

Impact Assessment

The impact of this vulnerability is critical. Successful exploitation leads to a complete breakdown of multi-tenant or multi-user isolation for personal SCIM integrations. The attack allows unprivileged users to disable existing integrations and take control of administrative directory synchronization mechanisms.

Once the attacker generates a valid token, they gain write access to SCIM resources, allowing the arbitrary creation, modification, and deletion of users. The modification of highly privileged users (such as administrators) allows immediate lateral movement and broader system compromise. The attacker can effectively lock legitimate users out of their accounts while establishing persistent administrative access.

This flaw is tracked as GHSA-J8V8-G9CX-5QF4. While no CVE has been assigned to this advisory at the time of writing, the underlying access control failure matches the characteristics of high-severity privilege escalation vectors.

Remediation and Defensive Configuration

To address this vulnerability, administrators and developers must upgrade @better-auth/scim to version v1.7.0-beta.4 or higher. The patch introduces the providerOwnership security control to properly associate and validate the creating user of a SCIM provider.

Because automating database migrations on live SQL databases can lead to service interruptions, the ownership control is not enabled by default. Developers must explicitly modify their Better Auth configuration to enable ownership tracking and enforce security restrictions:

import { scim } from "@better-auth/scim";
 
export const auth = new BetterAuth({
    plugins: [
        scim({
            providerOwnership: {
                enabled: true
            },
            canGenerateToken: async ({ user, providerId, organizationId }) => {
                // Restrict personal SCIM provider generation to authorized administrators
                if (!organizationId) {
                    return user.role === "super-admin";
                }
                return true;
            }
        })
    ]
});

In addition to the code changes, the database schema must be updated to include the missing userId column on the scimProvider table. The following SQL command performs the required modification:

ALTER TABLE "scimProvider" ADD COLUMN "userId" TEXT;

Applying both the package upgrade and the manual database schema migration ensures that ownership metadata is populated and evaluated correctly during token generation requests.

Official Patches

Better AuthBetter Auth SCIM Release v1.7.0-beta.4 containing fix logic

Technical Appendix

CVSS Score
8.8/ 10

Affected Systems

Applications utilizing the @better-auth/scim plugin within the better-auth ecosystem.

Affected Versions Detail

Product
Affected Versions
Fixed Version
@better-auth/scim
Better Auth
< 1.7.0-beta.41.7.0-beta.4
AttributeDetail
CWE IDCWE-862 (Missing Authorization)
Attack VectorNetwork
CVSS Score8.8
ImpactProvider hijacking and Account Takeover
Exploit Statusnone
KEV StatusNot listed

MITRE ATT&CK Mapping

T1098Account Manipulation
Persistence
T1078Valid Accounts
Initial Access
T1531Account Access Removal
Impact

Vulnerability Timeline

Vulnerability identified in routes.ts file.
2025-02-05
Code fixes integrated and committed.
2025-02-07
Release version v1.7.0-beta.4 published.
2025-02-10
GitHub Security Advisory GHSA-J8V8-G9CX-5QF4 disclosed.
2025-02-12

References & Sources

  • [1]GHSA-J8V8-G9CX-5QF4 Advisory Entry
  • [2]Better Auth Main Repository
  • [3]SCIM Route Declarations Source Code
  • [4]SCIM Plugin Index Entry Source Code

Attack Flow Diagram

Press enter or space to select a node. You can then use the arrow keys to move the node around. Press delete to remove it and escape to cancel.
Press enter or space to select an edge. You can then press delete to remove it or escape to cancel.

More Reports

•40 minutes ago•CVE-2026-105752
3.1

CVE-2026-105752: Cross-Tenant Prefix-Cache Information Leak via Cache Salt Omission in vLLM Harmony Path

A vulnerability in vLLM prior to 0.30.0 allows an authenticated multi-tenant attacker to infer execution history and prompt structures of other tenants. The multi-turn Responses API ('Harmony' path) fails to propagate the 'cache_salt' parameter during tool-call continuation steps, storing sensitive prompt prefixes in the global, unsalted cache space.

Alon Barad
Alon Barad
3 views•7 min read
•about 2 hours ago•CVE-2026-105753
6.5

CVE-2026-105753: Reachable Assertion in vLLM Multimodal IPC Cache Leading to Denial of Service

A state desynchronization (cache drift) vulnerability exists in the multimodal Inter-Process Communication (IPC) Least Recently Used (LRU) caches of vLLM. When a multimodal request fails validation after its media hash has been registered on the frontend but before the payload is committed to the backend engine core, the frontend and backend caches drift out of lockstep. A subsequent request reusing the same media triggers an assertion failure in the backend engine core, resulting in a complete denial of service.

Alon Barad
Alon Barad
6 views•5 min read
•about 3 hours ago•CVE-2026-105750
5.9

CVE-2026-105750: Local File Disclosure in Docling via Permissive HTML Rendering Requests Filter

CVE-2026-105750 is a medium-severity local file disclosure vulnerability affecting the Docling and Docling-Slim libraries. When processing HTML documents using the optional Playwright rendering backend, the application fail to validate and restrict request URIs using the file:// scheme. This permits an attacker supplying a crafted HTML file to access, render, and exfiltrate local system files.

Alon Barad
Alon Barad
7 views•7 min read
•about 4 hours ago•CVE-2026-102598
6.3

CVE-2026-102598: Remote Denial of Service via NTFS Alternate Data Stream Bypass in Werkzeug safe_join

CVE-2026-102598 is a security bypass and Denial of Service (DoS) vulnerability in the Werkzeug WSGI web application library. In versions prior to 3.1.9, the library's safe_join function fails to sanitize Windows reserved device names containing an empty NTFS Alternate Data Stream (ADS) marker (such as NUL:). This allows remote, unauthenticated attackers to trigger indefinite thread-blocking operations on Windows hosts, resulting in application-wide resource exhaustion.

Alon Barad
Alon Barad
9 views•7 min read
•about 5 hours ago•CVE-2026-103921
7.4

CVE-2026-103921: TLS Certificate Validation Bypass in @graphql-tools/executor-legacy-ws

A vulnerability in @graphql-tools/executor-legacy-ws prior to version 1.1.35 hardcodes the TLS rejectUnauthorized setting to false for outgoing secure WebSocket (wss://) connections. This defect allows unauthenticated remote attackers to perform Adversary-in-the-Middle (MitM) attacks, capturing or tampering with sensitive connection payloads and subscription data.

Alon Barad
Alon Barad
9 views•6 min read
•about 8 hours ago•CVE-2026-103918
6.5

CVE-2026-103918: Prototype Injection and Denial of Service in oRPC @orpc/zod Smart Coercion Engine

CVE-2026-103918 is a medium-severity vulnerability within the @orpc/zod smart coercion plugin in oRPC. Prior to version 1.14.10, the package fails to sanitize untrusted input keys when performing pre-validation type coercion, allowing prototype injection on the returned request object and Denial of Service.

Amit Schendel
Amit Schendel
10 views•6 min read