CVE-2026-105206 | Zitadel up to 4.16.2 User Service API improper authorization (EUVD-2026-92099)

SecurityVulns

A vulnerability, which was classified as problematic, has been found in Zitadel. Affected by this vulnerability is an unknown functionality of the component User Service API. The manipulation leads to improper authorization.

This vulnerability is referenced as CVE-2026-105206. Remote exploitation of the attack is possible. No exploit is available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More