CVE-2026-105211

CVE-2026-105211 published: ZITADEL before 4.17.1 contains an authentication bypass vulnerability in Login V2 that allows unauthenticated attackers to take over accounts by obtaining OTP codes via the returnCode delivery type. Attackers knowing a login name of a victim with OTP-Email ...

View full NVD advisory → ← Back to CVE watch