CVE@CVEnewPatch
CVE-2026-25922 is a SAML assertion signature verification flaw in authentik; versions before 2025.8.6, 2025.10.4, and 2025.12.4 contain the patch.
PulsePatch.io@pulsepatchioDisclosure
The post announces CVE‑2026‑25922, a signature verification bypass in the authentik SAML implementation that could allow unauthorized access, and links to a PulsePatch article for details.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A new CVE (CVE-2026-25922) describing a SAML assertion injection flaw in authentik Identity Provider has been announced, but no PoC, exploit code, or patch details are provided.
CVEFind.com@CveFindComPatch
The post announces the high‑severity CVE‑2026‑25922 and directs users to update authentik to specific patched versions to mitigate an assertion injection vulnerability.