CVE-2026-91187 PUBLISHED

Improper Verification of Cryptographic Signature in dashbit nimble_zta Cloudflare strategy

Assigner: EEF
Reserved: 15.09.2026 Published: 24.09.2026 Updated: 24.09.2026

Improper Verification of Cryptographic Signature vulnerability in dashbit nimble_zta allows an unauthenticated remote attacker to authenticate as an arbitrary Cloudflare service token. Applications using the Cloudflare Zero Trust authentication strategy are affected.

verify_token/2 in lib/nimble_zta/cloudflare.ex matches the result of JOSE.JWT.verify/2 against {_, token, _s}, which discards the boolean verification result and returns the decoded token after a failed signature check. The attacker sends a forged JWT in the cf-access-jwt-assertion header, carrying the expected iss claim and the seven service token claims. verify_iss/2 reads the iss claim from the forged token, so it rejects nothing, and the service token path then returns those claims as the authenticated identity.

This issue affects nimble_zta: from 0.1.2 before 0.1.3.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:N
CVSS Score: 9.3

Product Status

Vendor dashbit
Product nimble_zta
Versions Default: unaffected
  • affected from 0.1.2 to 0.1.3 (excl.)
Vendor dashbit
Product nimble_zta
Versions Default: unaffected
  • affected from bc004b70985ae5763901baab3a4e204047899768 to 6458fd18a5ba41166d4973214c519e98fe05b72d (excl.)

Affected Configurations

The application must add NimbleZTA.Cloudflare to its supervision tree and authenticate requests through it.

Workarounds

Disable the Cloudflare authentication strategy.

To keep the user identity strategy available, reject the service token requests yourself. Examine each request before you call NimbleZTA.Cloudflare.authenticate/3, and reject it if its JWT carries the common_name claim and the type claim.

Credits

  • Kazlu finder
  • José Valim / Dashbit remediation developer
  • Jonatan Männchen / EEF coordinator

References

Problem Types

  • CWE-347 Improper Verification of Cryptographic Signature CWE

Impacts

  • The attacker authenticates as an arbitrary Cloudflare service token without holding the Cloudflare signing key. The application receives the client_id and the claims of the forged token as the authenticated identity, so the attacker gets the access that the application grants to that service token.