Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2026-44671
ZITADEL is an open source identity management platform. From 2.71.11 to before 3.4.10 and 4.15.0, a vulnerability was discovered in Zitadel's LDAP id…
Zitadel
3.4.10 / 4.15.0+
MEDIUM 5.3
CVE-2026-33132
ZITADEL is an open source identity management platform. Versions prior to 3.4.9 and 4.0.0 through 4.12.2 allowed users to bypass organization enforce…
Zitadel
3.4.9 / 4.12.3+
HIGH 7.4
CVE-2026-32132
ZITADEL is an open source identity management platform. Prior to 3.4.8 and 4.12.2, a potential vulnerability exists in Zitadel's passkey registration…
Zitadel
3.4.8 / 4.12.2+
HIGH 7.7
CVE-2026-32131
ZITADEL is an open source identity management platform. Prior to 3.4.8 and 4.12.2, a vulnerability in Zitadel's Management API has been reported, whi…
Zitadel
3.4.8 / 4.12.2+
HIGH 7.5
CVE-2026-32130
ZITADEL is an open source identity management platform. From 2.68.0 to before 3.4.8 and 4.12.2, Zitadel provides a System for Cross-domain Identity M…
Zitadel
3.4.8 / 4.12.2+
CRITICAL 9.3
CVE-2026-29191
ZITADEL is an open source identity management platform. From version 4.0.0 to 4.11.1, a vulnerability in Zitadel's login V2 interface was discovered …
Zitadel
4.12.0+
HIGH 8.2
CVE-2026-29193
ZITADEL is an open source identity management platform. From version 4.0.0 to 4.12.0, a vulnerability in Zitadel's login V2 UI allowed users to bypas…
Zitadel
4.12.1+
HIGH 7.7
CVE-2026-29192
ZITADEL is an open source identity management platform. From version 4.0.0 to 4.11.1, a vulnerability in Zitadel's login V2 interface was discovered …
Zitadel
4.12.0+
CRITICAL 9.3
CVE-2026-29067
ZITADEL is an open source identity management platform. From version 4.0.0-rc.1 to 4.7.0, a potential vulnerability exists in ZITADEL's password rese…
Zitadel
4.7.1+
MEDIUM 6.5
CVE-2026-27945
ZITADEL is an open source identity management platform. Zitadel Action V2 (introduced as early preview in 2.59.0, beta in 3.0.0 and GA in 4.0.0) is a…
Zitadel
4.11.1+
MEDIUM 6.5
CVE-2026-27946
ZITADEL is an open source identity management platform. Prior to versions 4.11.1 and 3.4.7, a vulnerability in Zitadel's self-management capability a…
Zitadel
3.4.7 / 4.11.0+
MEDIUM 5.3
CVE-2026-23511
ZITADEL is an open source identity management platform. Prior to 4.9.1 and 3.4.6, a user enumeration vulnerability has been discovered in Zitadel's l…
Zitadel
3.4.6 / 4.9.1+
MEDIUM 6.1
CVE-2025-67495
ZITADEL is an open-source identity infrastructure tool. Versions 4.0.0-rc.1 through 4.7.0 are vulnerable to DOM-Based XSS through the Zitadel V2 logo…
Zitadel
4.7.1+
HIGH 8.6
CVE-2025-67494
ZITADEL is an open-source identity infrastructure tool. Versions 4.7.0 and below are vulnerable to an unauthenticated, full-read SSRF vulnerability. …
Zitadel
4.7.1+
CRITICAL 9.8
CVE-2025-64717
ZITADEL is an open source identity management platform. Starting in version 2.50.0 and prior to versions 2.71.19, 3.4.4, and 4.6.6, a vulnerability i…
Zitadel
2.71.19 / 3.4.4+
CRITICAL 9.8
CVE-2025-64103
Starting from 2.53.6, 2.54.3, and 2.55.0, Zitadel only required multi factor authentication in case the login policy has either enabled requireMFA or…
Zitadel
2.71.18 / 3.4.3+
CRITICAL 9.8
CVE-2025-64102
Zitadel is open-source identity infrastructure software. Prior to 4.6.0, 3.4.3, and 2.71.18, an attacker can perform an online brute-force attack on …
Zitadel
2.71.18 / 3.4.3+
HIGH 8.8
CVE-2025-64101
Zitadel is open-source identity infrastructure software. Prior to 4.6.0, 3.4.3, and 2.71.18, a potential vulnerability exists in ZITADEL's password r…
Zitadel
2.71.18 / 3.4.3+
MEDIUM 5.3
CVE-2025-57770
The open-source identity infrastructure software Zitadel allows administrators to disable the user self-registration. Versions 4.0.0 to 4.0.2, 3.0.0 …
Zitadel
2.71.15 / 3.4.0+
HIGH 8.8
CVE-2025-53895
ZITADEL is an open source identity management system. Starting in version 2.53.0 and prior to versions 4.0.0-rc.2, 3.3.2, 2.71.13, and 2.70.14, vulne…
Zitadel
2.70.14 / 2.71.13+
HIGH 8.8
CVE-2025-48936
Zitadel is open-source identity infrastructure software. Prior to versions 2.70.12, 2.71.10, and 3.2.2, a potential vulnerability exists in the passw…
Zitadel
2.70.12 / 2.71.11+
HIGH 8.0
CVE-2025-46815
The identity infrastructure software ZITADEL offers developers the ability to manage user sessions using the Session API. This API enables the use of…
Zitadel
2.70.10 / 2.71.9+
HIGH 8.7
CVE-2025-31123
Zitadel is open-source identity infrastructure software. A vulnerability existed where expired keys can be used to retrieve tokens. Specifically, ZIT…
Zitadel
2.63.9 / 2.64.6+
MEDIUM 5.3
CVE-2025-31124
Zitadel is open-source identity infrastructure software. ZITADEL administrators can enable a setting called "Ignoring unknown usernames" which helps …
Zitadel
2.63.9 / 2.64.6+
CRITICAL 9.0
CVE-2025-27507
The open-source identity infrastructure software Zitadel allows administrators to disable the user self-registration. ZITADEL's Admin API contains In…
Zitadel
2.63.8 / 2.64.5+
CRITICAL 9.1
CVE-2024-49753
Zitadel is open-source identity infrastructure software. Versions prior to 2.64.1, 2.63.6, 2.62.8, 2.61.4, 2.60.4, 2.59.5, and 2.58.7 have a flaw in …
Zitadel
2.58.7 / 2.59.5+
HIGH 7.5
CVE-2024-47000
Zitadel is an open source identity management platform. ZITADEL's user account deactivation mechanism did not work correctly with service accounts. D…
Zitadel
2.54.10 / 2.55.8+
MEDIUM 6.5
CVE-2024-46999
Zitadel is an open source identity management platform. ZITADEL's user grants deactivation mechanism did not work correctly. Deactivated user grants …
Zitadel
2.54.10 / 2.55.8+
MEDIUM 6.5
CVE-2024-47060
Zitadel is an open source identity management platform. In Zitadel, even after an organization is deactivated, associated projects, respectively thei…
Zitadel
2.54.10 / 2.55.8+
MEDIUM 6.1
CVE-2024-41953
Zitadel is an open source identity management system. ZITADEL uses HTML for emails and renders certain information such as usernames dynamically. Tha…
Zitadel
2.52.3 / 2.53.9+