Authentik

Goauthentik · 45 CVEs

CVE-2026-94606
HIGH

authentik: MFA Bypass via State Confusion / Parameter Injection in AuthenticatorEmailStage

Sep 24, 2026

CVE-2026-94609
HIGH

authentik: Privilege Escalation to Superuser via Group Hierarchy

Sep 24, 2026

CVE-2026-94611
HIGH

authentik: Stored credentials are readable with view permission alone

Sep 24, 2026

CVE-2026-94612
HIGH

authentik: Authentication bypass via assertion confusion in SAML sources

Sep 24, 2026

CVE-2026-94613
HIGH

authentik: Denial of Service via Document Type Declarations in SAML Messages

Sep 24, 2026

CVE-2026-57580
CRITICAL

authentik: Account Takeover via SAML NameID Comment Truncation

Aug 18, 2026

CVE-2026-55106
MEDIUM

authentik: Unauthenticated LDAP directory data disclosure

Aug 18, 2026

CVE-2026-61574
HIGH

authentik RAC: access any endpoint via an unrelated application

Aug 18, 2026

CVE-2026-54730
HIGH

authentik: Authentication Flow Bypass via Unguarded challenge_valid() in AuthenticatorEndpointGDTCStage and GoogleChrom…

Aug 18, 2026

CVE-2026-49448
CRITICAL

authentik: SourceStage bypass via empty POST

Jun 2, 2026

CVE-2026-49443
HIGH

authentik: `UserSourceConnection.user` and `GroupSourceConnection.group` are changeable through the API

Jun 2, 2026

CVE-2026-47201
HIGH

authentik: XML Signature Wrapping in SAML Source ACS allows authentication as arbitrary federated user

Jun 2, 2026

CVE-2026-42849
CRITICAL

authentik: Reflected XSS in SFE AutosubmitStage allows IDP account takeover

Jun 2, 2026

CVE-2026-41569
MEDIUM

authentik: WS-Federation wreply origin bypass can exfiltrate signed login responses to attacker-controlled endpoints

Jun 2, 2026

CVE-2026-41577
MEDIUM

authentik: SAML source does not validate Conditions, timing, or audience on assertions

Jun 2, 2026

CVE-2026-40172
HIGH

authentik: Privilege Escalation via User PATCH: Superuser Group Assignment Bypasses enable_group_superuser

May 22, 2026

CVE-2026-40166
HIGH

authentik: Non-admin user can retrieve confidential OAuth client_secret via /api/v3/oauth2/access_tokens/

May 22, 2026

CVE-2026-40165
HIGH

authentik: SAML NameID XML Comment Injection Enables Authentication Bypass via Identifier Truncation

May 20, 2026

CVE-2026-25922
HIGH

authentik has a Signature Verification Bypass via SAML Assertion Wrapping

Feb 12, 2026

CVE-2026-25748
HIGH

authentik has a forward authentication bypass with broken cookie

Feb 12, 2026

CVE-2026-25227
CRITICAL

authentik affected by Remote Code Execution via Context Key Injection in PropertyMapping Test Endpoint

Feb 12, 2026

CVE-2025-64708
MEDIUM

authentik invitation expiry is delayed by at least 5 minutes

Nov 19, 2025

CVE-2025-64521
MEDIUM

authentik deactivated service accounts can authenticate to OAuth

Nov 19, 2025

CVE-2025-53942
HIGH

authentik has an insufficient check for account active status during OAuth/SAML authentication

Jul 23, 2025

CVE-2025-52553
MEDIUM

authentik has Insufficient Session verification for Remote Access Control endpoint access

Jun 27, 2025

Showing 1 to 25 of 45 CVEs