CVE-2026-49448
Published Jun 2, 2026authentik is an open-source identity provider. Prior to versions 2025.12.6, 2026.2.4, and 2026.5.1, the Source stage can be bypassed by sending an empty POST. This issue has been…
- evidence mentions
- 1
- Buzz score
- 11.9