Zitadel Privilege Escalation: Self-Verification Bypass via UpdateHumanUser API (CVE-2026-27946)
Security AdvisoryCVE-2026-27946HighZITADEL
Affected:
- ZITADEL 4.0.0
- ZITADEL 4.11.0
- ZITADEL 3.0.0
- ZITADEL 3.4.6
- ZITADEL 2.43.0
Fixed in:
- ZITADEL 4.11.1
- ZITADEL 3.4.7
参照 CVE: CVE-2026-27946
本文由本平台从 github.com 自动抓取,经 LLM 流水线清洗、双语翻译。版权归原作者。查看原文。