CVE-2026-105207 | Zitadel up to 3.4.15/4.17.2 User Service AddIDPLink improper authentication (EUVD-2026-92100)
A vulnerability identified as critical has been detected in Zitadel up to 3.4.15/4.17.2. This affects the function AddIDPLink of the component User Service. This manipulation causes improper authentication.
This vulnerability appears as CVE-2026-105207. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More