CVE-2026-94611 - authentik: Stored credentials are readable with view permission alone

CVE-2026-94611 - authentik: Stored credentials are readable with view permission alone CVE ID : CVE-2026-94611 Published : 24 septembre 2026 17:17 | 21 minutes ago Description : authentik is an open-source identity provider. 2, aut...

2 reportsother

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

CVE-2026-94611 - authentik: Stored credentials are readable with view permission alone

stream:bsky-jetstreamother5d ago kagi ↗

CVE-2026-94611 - authentik: Stored credentials are readable with view permission alone CVE ID : CVE-2026-94611 Published : 24 septembre 2026 17:17 | 21 minutes ago Description : authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, aut... authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, authentik API serializers return st

CVE-2026-94609 - authentik: Privilege Escalation to Superuser via Group Hierarchy

stream:bsky-jetstreamother5d ago kagi ↗

CVE-2026-94609 - authentik: Privilege Escalation to Superuser via Group Hierarchy CVE ID : CVE-2026-94609 Published : 24 septembre 2026 17:17 | 21 minutes ago Description : authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an accou... authentik is an open-source identity provider. Prior to 2026.2.7, 2026.5.7, and 2026.8.2, an account with delegated permissio