Zitadel Privilege Escalation: Self-Verification Bypass via UpdateHumanUser API (CVE-2026-27946)
Security AdvisoryCVE-2026-27946HighZITADEL
Affected:
- ZITADEL 4.0.0
- ZITADEL 4.11.0
- ZITADEL 3.0.0
- ZITADEL 3.4.6
- ZITADEL 2.43.0
Fixed in:
- ZITADEL 4.11.1
- ZITADEL 3.4.7
Referenced CVEs: CVE-2026-27946
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.