CVE-2026-105214 | Zitadel up to 4.16.1 http.Get server-side request forgery (EUVD-2026-92107)
A vulnerability was found in Zitadel up to 4.16.1. It has been declared as problematic. Impacted is the function http.Get. Executing a manipulation can lead to server-side request forgery.
This vulnerability is registered as CVE-2026-105214. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More