Assaf Kipnis@KTLYST_labsPatch
The post announces a critical ZITADEL password reset bypass (CVE-2026-29067), urges users of versions 4.0–4.7 to apply the patch, and briefly references other related vulnerabilities, but no active exploitation or PoC is reported.
CRAC Learning - Tech@cracbotDisclosure
The post announces CVE-2026-29067 in ZITADEL 4.x with a high CVSS score and affected versions, but it does not provide any PoC, exploit code, active exploitation evidence, or patch information.
CVE@CVEnewDisclosure
The statement announces CVE‑2026‑29067 in ZITADEL, noting affected versions and a password‑reset flaw, but gives no PoC, exploit, or mitigation details.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A password reset mechanism flaw has been identified in ZITADEL Identity Management Platform versions 4.0.0‑rc.1 to 4.7.0 (CVE‑2026‑29067).
The Hacker Wire@TheHackerWireDisclosure
ZITADEL's password reset mechanism is reported to have a high‑severity vulnerability affecting versions 4.0.0‑rc.1 through 4.7.0, with no PoC or exploit details provided.